References https://nvd.nist.gov/vuln/detail/CVE-2025-34152 https://github.com/kh4sh3i/CVE-2025-34152 https://www.vulncheck.com/advisories/shenzhen-aitemi-m300-wifi-repeater-os-command-injection-via-time-parameter https://gist.github.com/Chocapikk/016bdf727a71af36b800b4da0e84b85a https://attackerkb.com/topics/vOQYG5Nn7Y/cve-2025-34152 https://www.sentinelone.com/vulnerability-database/cve-2025-34152/ https://cxsecurity.com/issue/WLB-2025080006 https://sploitus.com/exploit?id=MSF:EXPLOIT-LINUX-HTTP-AITEMI_M300_TIME_RCE- https://app.opencve.io/cve/?vendor=shenzhen_aitemi&product=m300_wifi_repeater https://chocapikk.com/posts/2025/when-a-wifi-name-gives-you-root-part-two/
Related Vulnerabilities深圳艾特米M300Wi-Fi 中继器 /protocol.csp 命令执行漏洞(CVE-2025-34152)PoCCVE-2025-34152: Shenzhen Aitemi M300 Wi-Fi Repeater – Unauthenticated Remote Command Execution via `time` Parameter