Xiaomi shop是中国小米(Xiaomi)公司的一款购物应用程序,用户可以在该应用中购买小米及其生态链企业的各种产品,包括手机、智能硬件、家电等。 Xiaomi shop存在安全漏洞,该漏洞源于输入验证不当,可能导致代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Xiaomi | Xiaomi shop application | Xiaomi shop application 5.30.0.20241103.r1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-45352 | 8.8 HIGH | Xiaomi smarthome application Webview has code execution vulnerability |
| CVE-2024-45356 | 7.3 HIGH | Xiaomi phone framework has unauthorized access vulnerability |
| CVE-2024-45361 | 6.5 MEDIUM | Mi Connect Service APP protocol flaws lead to leaking sensitive user information |
| CVE-2024-45355 | 5.5 MEDIUM | Xiaomi phone framework has unauthorized access vulnerability |
| CVE-2024-45353 | 4.3 MEDIUM | quick App has intent redriction vulnerability |
No comments yet