An code execution vulnerability exists in the Xiaomi smarthome application product. The vulnerability is caused by improper input validation and can be exploited by attackers to execute malicious code.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 27 Mar 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An code execution vulnerability exists in the Xiaomi smarthome application product. The vulnerability is caused by improper input validation and can be exploited by attackers to execute malicious code. | |
| Title | Xiaomi smarthome application Webview has code execution vulnerability | |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Xiaomi
Published: 2025-03-27T02:02:34.511Z
Updated: 2025-03-27T13:44:35.760Z
Reserved: 2024-08-28T02:24:34.839Z
Link: CVE-2024-45352
Updated: 2025-03-27T13:44:32.120Z
Status : Awaiting Analysis
Published: 2025-03-27T02:15:15.873
Modified: 2025-03-27T16:45:27.850
Link: CVE-2024-45352
No data.