Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x996-66p6-8fwx

Опубликовано: 22 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.

A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.

EPSS

Процентиль: 14%
0.00047
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.5
nvd
почти 4 года назад

A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.

EPSS

Процентиль: 14%
0.00047
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-287