Xiaomi Quick App Framework是中国小米(Xiaomi)公司的一款 IP 摄像头设备,一个轻量级应用开发框架,允许开发者快速创建和发布无需下载安装即可使用的快应用。 Xiaomi Quick App Framework存在安全漏洞,该漏洞源于输入验证不当,可能导致意图重定向。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Xiaomi | quick app framework | quick app framework 1.30.2.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-45352 | 8.8 HIGH | Xiaomi smarthome application Webview has code execution vulnerability |
| CVE-2024-45356 | 7.3 HIGH | Xiaomi phone framework has unauthorized access vulnerability |
| CVE-2024-45361 | 6.5 MEDIUM | Mi Connect Service APP protocol flaws lead to leaking sensitive user information |
| CVE-2024-45355 | 5.5 MEDIUM | Xiaomi phone framework has unauthorized access vulnerability |
| CVE-2024-45354 | 4.3 MEDIUM | xiaomi shop application Webview has code execution vulnerability |
No comments yet