Impact
The vulnerability resides in the sprintf function used by the /protocol.csp endpoint on Shenzhen Aitemi M300 Wi‑Fi Repeater. Malicious manipulation of the enable, name, or mac parameters allows an attacker to inject arbitrary OS commands. The flaw is a direct command injection (CWE‑74/CWE‑77), enabling an attacker to execute code with the privileges of the device’s firmware and potentially gain full control of the device.
Affected Systems
Aitemi M300 Wi‑Fi Repeater running firmware r0‑ea7890a is affected. No additional firmware or versions were listed as impacted.
Risk and Exploitability
This issue has a CVSS score of 9.3, indicating critical severity. No EPSS score is provided, but the existence of a publicly available exploit and the remote nature of the attack suggest a high likelihood of exploitation. The flaw is not yet listed in the CISA KEV catalog, yet the vulnerability remains critical for affected devices.
OpenCVE Enrichment