CVE-2020-14121
21.04.2022, 18:15
A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mi | mi_app_store | 4.12.2 |
𝑥
= Vulnerable software versions