CVE-2020-29664: Dji Mavic 2 Firmware

High severity, CVSS 7.8. EPSS: 1.5% chance of exploitation in the next 30 days.

A command injection issue in dji_sys in DJI Mavic 2 Remote Controller before firmware version 01.00.0510 allows for code execution via a malicious firmware upgrade packet.

Affected products

  • Dji Mavic 2 Firmware: before 01.00.0510 (fixed in 01.00.0510)

Published 2021-02-18. Last modified 2026-06-17.