System command injection in request_mitv in Xiaomi Mi Router 3 version 2.22.15 allows malicious users to execute arbitrary system commands via the "payload" URL parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mi miwifi_os 2.22.15 |