CVE-2024-37663

MEDIUM

Redmi Router RB03 <1.0.57 - SSRF

Title source: llm
STIX 2.1

Description

Redmi router RB03 v1.0.57 is vulnerable to forged ICMP redirect message attacks. An attacker in the same WLAN as the victim can hijack the traffic between the victim and any remote server by sending out forged ICMP redirect messages.

Scores

CVSS v3 4.1
EPSS 0.0006
EPSS Percentile 19.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-940
Status published
Products (1)
mi/redmi_ax6s_firmware 1.0.57
Published Jun 17, 2024
Tracked Since Feb 18, 2026