VYPR

Mi App Store

by Mi

CVEs (2)

  • CVE-2020-14118MedApr 21, 2022
    risk 0.40cvss 6.1epss 0.01

    An intent redirection vulnerability in the Mi App Store product. This vulnerability is caused by the Mi App Store does not verify the validity of the incoming data, can cause the app store to automatically download and install apps.

  • CVE-2020-14121MedApr 21, 2022
    risk 0.36cvss 5.5epss 0.00

    A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.