Описание
A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the verification logic being bypassed, and an attacker can exploit this vulnerability to execute malicious code.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 31.2.5.0 (включая) до 32.0.0.1 (исключая)
cpe:2.3:a:mi:getapps:*:*:*:*:*:*:*:*
EPSS
Процентиль: 43%
0.00207
Низкий
8.8 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-94
Связанные уязвимости
CVSS3: 8.8
github
больше 1 года назад
A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the verification logic being bypassed, and an attacker can exploit this vulnerability to execute malicious code.
EPSS
Процентиль: 43%
0.00207
Низкий
8.8 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-94