CVE-2024-45347
Last modified
CVE-2024-45347 is a critical-severity vulnerability rated 9.6/10 on the CVSS scale. An unauthorized access vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to Unauthorized access to the victim’s device.. EPSS estimates a 0.23% chance of exploitation in the next 30 days.
Description
An unauthorized access vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to Unauthorized access to the victim’s device.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-45347?
How severe is CVE-2024-45347?
How do I fix CVE-2024-45347?
Are you affected by CVE-2024-45347?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
