CVE-2020-14109: Mi AX3600 Firmware

High severity, CVSS 7.2. EPSS: 2.2% chance of exploitation in the next 30 days.

There is command injection in the meshd program in the routing system, resulting in command execution under administrator authority on Xiaomi router AX3600 with ROM version =< 1.1.12

Affected products

  • Mi AX3600 Firmware: up to and including 1.1.12

Published 2021-09-16. Last modified 2026-06-17.