Code Execution Flaw in Xiaomi Smarthome Application
CVE-2024-45352
8.8HIGH
Summary
A code execution flaw has been identified in the Xiaomi Smarthome Application due to inadequate input validation. This weakness allows malicious actors to exploit the application, potentially leading to unauthorized execution of harmful code within the system. Users are advised to update to the latest version to mitigate the risks associated with this vulnerability. Maintaining robust security practices is essential to safeguard devices connected to the smarthome ecosystem.
Affected Version(s)
Xiaomi smarthome application Xiaomi smarthome application 10.0.623
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved