Description
A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a. Impacted is the function sprintf of the file /protocol.csp?fname=net&opt=smacfilter_conf&function=set&act=add&name=test&enable=1. Performing a manipulation of the argument enable/name/mac results in command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.
Published: 2026-08-09
Score: 9.3 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability resides in the sprintf function used by the /protocol.csp endpoint on Shenzhen Aitemi M300 Wi‑Fi Repeater. Malicious manipulation of the enable, name, or mac parameters allows an attacker to inject arbitrary OS commands. The flaw is a direct command injection (CWE‑74/CWE‑77), enabling an attacker to execute code with the privileges of the device’s firmware and potentially gain full control of the device.

Affected Systems

Aitemi M300 Wi‑Fi Repeater running firmware r0‑ea7890a is affected. No additional firmware or versions were listed as impacted.

Risk and Exploitability

This issue has a CVSS score of 9.3, indicating critical severity. No EPSS score is provided, but the existence of a publicly available exploit and the remote nature of the attack suggest a high likelihood of exploitation. The flaw is not yet listed in the CISA KEV catalog, yet the vulnerability remains critical for affected devices.

Generated by OpenCVE AI on August 9, 2026 at 11:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the firmware to a version that removes the vulnerable sprintf usage or otherwise addresses command injection in the /protocol.csp endpoint.
  • If an update is unavailable, block or restrict remote access to the /protocol.csp endpoint through network ACLs or firewall rules, and disable remote management features if not needed.
  • Apply input validation or properly escape user‑supplied parameters before they reach the system command execution context.
  • Monitor device logs for suspicious command executions or abnormal configuration changes.

Generated by OpenCVE AI on August 9, 2026 at 11:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 09 Aug 2026 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Shenzhen Aitemi m300 Wifi Repeater
Vendors & Products Shenzhen Aitemi m300 Wifi Repeater

Sun, 09 Aug 2026 10:45:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a. Impacted is the function sprintf of the file /protocol.csp?fname=net&opt=smacfilter_conf&function=set&act=add&name=test&enable=1. Performing a manipulation of the argument enable/name/mac results in command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.
Title Shenzhen Aitemi M300 Wi-Fi Repeater protocol.csp sprintf command injection
First Time appeared Shenzhen Aitemi
Shenzhen Aitemi m300 Wi-fi Repeater
Weaknesses CWE-74
CWE-77
CPEs cpe:2.3:a:shenzhen_aitemi:m300_wi-fi_repeater:*:*:*:*:*:*:*:*
Vendors & Products Shenzhen Aitemi
Shenzhen Aitemi m300 Wi-fi Repeater
References
Metrics cvssV2_0

{'score': 10, 'vector': 'AV:N/AC:L/Au:N/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 9.8, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Shenzhen Aitemi M300 Wi-fi Repeater M300 Wifi Repeater
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-09T10:30:09.153Z

Reserved: 2026-08-08T13:56:38.542Z

Link: CVE-2026-19348

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-09T12:15:03Z

Weaknesses
  • CWE-74

    Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

  • CWE-77

    Improper Neutralization of Special Elements used in a Command ('Command Injection')