Описание
A code execution vulnerability exists in the Xiaomi App market product. The vulnerability is caused by unsafe configuration and can be exploited by attackers to execute arbitrary code.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 4.57.4 (включая) до 4.58.2 (исключая)
cpe:2.3:a:mi:app_market:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00172
Низкий
7.6 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-95
Связанные уязвимости
CVSS3: 7.6
github
больше 1 года назад
A code execution vulnerability exists in the Xiaomi App market product. The vulnerability is caused by unsafe configuration and can be exploited by attackers to execute arbitrary code.
EPSS
Процентиль: 39%
0.00172
Низкий
7.6 High
CVSS3
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-95