Описание
An intent redirection vulnerability in the Mi Browser product. This vulnerability is caused by the Mi Browser does not verify the validity of the incoming data. Attackers can perform sensitive operations by exploiting this.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 15.8.0 (исключая)
cpe:2.3:a:mi:mi_browser:*:*:*:*:*:*:*:*
EPSS
Процентиль: 30%
0.00113
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-345
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
An intent redirection vulnerability in the Mi Browser product. This vulnerability is caused by the Mi Browser does not verify the validity of the incoming data. Attackers can perform sensitive operations by exploiting this.
EPSS
Процентиль: 30%
0.00113
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-345