Description
A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-6280 | A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation. |
References
History
No history.
Status: PUBLISHED
Assigner: Xiaomi
Published:
Updated: 2024-08-04T12:39:35.919Z
Reserved: 2020-06-15T00:00:00.000Z
Link: CVE-2020-14121
No data.
Status : Modified
Published: 2022-04-21T18:15:08.607
Modified: 2024-11-21T05:02:42.010
Link: CVE-2020-14121
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD