Horizon Alert
Summary of the vulnerability and why it matters
This advisory concerns a critical vulnerability in MSI Radix AXE6600 router firmware that could allow remote attackers to execute arbitrary commands and gain root privileges. The issue lies within the TelnetSSH function used for SSH configuration. At a high level, this could potentially compromise the affected devices if their management interfaces are accessible.
- Commands can be injected remotely.
- Affects network device security and management.
- Confirm relevance and potential exposure of affected devices.
Attack Path
How an attacker could exploit the issue
An attacker could remotely exploit this vulnerability by interacting with the SSH configuration interface of the MSI Radix AXE6600 router. This interaction allows them to inject commands, potentially leading to the execution of arbitrary code with root privileges on the affected device.
- No authentication required to access.
- Triggered through the SSH configuration interface.
- Allows arbitrary command execution and root access.
Live Threat
Current exploitation, exposure, and threat context
This vulnerability could allow remote attackers to execute arbitrary commands on the affected router when the TelnetSSH function is used for SSH configuration. This could lead to unauthorized control of the device.
- Device control and system access.
- Exploitation via SSH configuration interface.
- Root privileges on the underlying system.
Operational Fix
Recommended remediation, mitigation, and detection steps
The affected MSI Radix AXE6600 router firmware, particularly its TelnetSSH function, presents a critical command injection vulnerability. Given its network-facing nature and the potential for remote exploitation, infrastructure and network security teams are likely responsible for managing this device. The immediate priority is to identify all deployed instances of this router, assess their exposure to the internet, and determine their business criticality to inform a risk-based remediation plan.
- Ownership: Network and security teams.
- Verify first: Internet reachability and criticality.
- Action: Plan for firmware update or access control.