Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 08 Oct 2024 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 |
Fri, 06 Sep 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mi
Mi ax9000 Mi ax9000 Firmware |
|
| Weaknesses | CWE-77 | |
| CPEs | cpe:2.3:h:mi:ax9000:-:*:*:*:*:*:*:* cpe:2.3:o:mi:ax9000_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Mi
Mi ax9000 Mi ax9000 Firmware |
Mon, 26 Aug 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 26 Aug 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Xiaomi router AX9000 has a post-authentication command injection vulnerability. This vulnerability is caused by the lack of input filtering, allowing an attacker to exploit it to obtain root access to the device. | |
| Title | Xiaomi router has a command injection vulnerability after authorization | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Xiaomi
Published:
Updated: 2024-10-08T09:49:35.915Z
Reserved: 2023-02-22T16:59:28.182Z
Link: CVE-2023-26315
Updated: 2024-08-26T17:40:07.193Z
Status : Modified
Published: 2024-08-26T12:15:05.387
Modified: 2024-10-08T10:15:03.300
Link: CVE-2023-26315
No data.
OpenCVE Enrichment
No data.