Command Injection Vulnerability in Xiaomi Mi Router 3 (v2.22.15) WiFi Access

Command Injection Vulnerability in Xiaomi Mi Router 3 (v2.22.15) WiFi Access

CVE-2018-13023 · HIGH Severity

AV:N/AC:L/AU:S/C:C/I:C/A:C

System command injection vulnerability in wifi_access in Xiaomi Mi Router 3 version 2.22.15 allows attackers to execute system commands via the "timeout" URL parameter.

Learn more about our Web Application Penetration Testing UK.