PT-2024-12096 · Xiaomi · Xiaomi App Market

Published

2024-08-28

·

Updated

2024-09-12

·

CVE-2023-26323

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Xiaomi App Market product (affected versions not specified)
Description A code execution vulnerability exists in the Xiaomi App market product due to unsafe configuration, allowing attackers to execute arbitrary code. The vulnerability can be exploited by attackers, but details about real-world incidents or the estimated number of potentially affected devices are not provided.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Eval Injection

Weakness Enumeration

Related Identifiers

CVE-2023-26323

Affected Products

Xiaomi App Market