VYPR

Vendor CVEs

Mi

All CVEs

101 total · sorted by risk
  • CVE-2018-20823HigApr 25, 2019
    risk 0.49cvss 7.5epss 0.01

    The gyroscope on Xiaomi Mi 5s devices allows attackers to cause a denial of service (resonance and false data) via a 20.4 kHz audio signal, aka a MEMS ultrasound attack.

  • CVE-2018-19939HigDec 7, 2018
    risk 0.49cvss 7.5epss 0.01

    The Goodix GT9xx touchscreen driver for custom Linux kernels on Xiaomi daisy-o-oss and daisy-p-oss as used in Mi A2 Lite and RedMi6 pro devices through 2018-08-27 has a NULL pointer dereference in kfree after a kmalloc failure in gtp_read_Color in…

  • CVE-2018-16307HigSep 5, 2018
    risk 0.49cvss 7.5epss 0.02

    An "Out-of-band resource load" issue was discovered on Xiaomi MIWiFi Xiaomi_55DD Version 2.8.50 devices. It is possible to induce the application to retrieve the contents of an arbitrary external URL and return those contents in its own response. If a domain name (containing a…

  • CVE-2020-9531HigMar 6, 2020
    risk 0.48cvss 7.3epss 0.01

    An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. In the Web resources of GetApps(com.xiaomi.mipicks), the parameters passed in are read and executed. After reading the resource files, relevant components open the link of the incoming URL. Although the URL is…

  • CVE-2019-15843HigSep 18, 2019
    risk 0.48cvss 7.4epss 0.01

    A malicious file upload vulnerability was discovered in Xiaomi Millet mobile phones 1-6.3.9.3. A particular condition involving a man-in-the-middle attack may lead to partial data leakage or malicious file writing.

  • CVE-2020-14109HigSep 16, 2021
    risk 0.47cvss 7.2epss 0.02

    There is command injection in the meshd program in the routing system, resulting in command execution under administrator authority on Xiaomi router AX3600 with ROM version =< 1.1.12

  • CVE-2020-14102HigJan 13, 2021
    risk 0.47cvss 7.2epss 0.02

    There is command injection when ddns processes the hostname, which causes the administrator user to obtain the root privilege of the router. This affects Xiaomi router AX1800rom version < 1.0.336 and Xiaomi route RM1800 root version < 1.0.26.

  • CVE-2023-26317HigAug 2, 2023
    risk 0.46cvss 7.0epss 0.01

    Xiaomi routers have an external interface that can lead to command injection. The vulnerability is caused by lax filtering of responses from external interfaces. Attackers can exploit this vulnerability to gain access to the router by hijacking the ISP or upper-layer routing.

  • CVE-2023-26315MedAug 26, 2024
    risk 0.44cvss 6.5epss 0.19

    The Xiaomi router AX9000 has a post-authentication command injection vulnerability. This vulnerability is caused by the lack of input filtering, allowing an attacker to exploit it to obtain root access to the device.

  • CVE-2023-26319MedOct 11, 2023
    risk 0.44cvss 6.7epss 0.01

    Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Xiaomi Xiaomi Router allows Command Injection.

  • CVE-2023-26318MedOct 11, 2023
    risk 0.44cvss 6.7epss 0.01

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Xiaomi Xiaomi Router allows Overflow Buffers.

  • CVE-2020-10263MedApr 8, 2020
    risk 0.44cvss 6.8epss 0.01

    An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.52.4. Attackers can get root shell by accessing the UART interface and then they can (i) read Wi-Fi SSID or password, (ii) read the dialogue text files between users and XIAOMI XIAOAI speaker Pro LX06, (iii) use…

  • CVE-2020-10262MedApr 8, 2020
    risk 0.44cvss 6.8epss 0.01

    An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.58.10. Attackers can activate the failsafe mode during the boot process, and use the mi_console command cascaded by the SN code shown on the product to get the root shell password, and then the attacker can (i) read…

  • CVE-2020-8994MedMar 5, 2020
    risk 0.44cvss 6.8epss 0.01

    An issue was discovered on XIAOMI AI speaker MDZ-25-DT 1.34.36, and 1.40.14. Attackers can get root shell by accessing the UART interface and then they can read Wi-Fi SSID or password, read the dialogue text files between users and XIAOMI AI speaker, use Text-To-Speech tools…

  • CVE-2024-45348MedSep 23, 2024
    risk 0.42cvss 6.4epss 0.01

    Xiaomi Router AX9000 has a post-authorization command injection vulnerability. This vulnerability is caused by the lack of validation of user input, and an attacker can exploit this vulnerability to execute arbitrary code.

  • CVE-2021-31610MedSep 7, 2021
    risk 0.42cvss 6.5epss 0.01

    The Bluetooth Classic implementation on AB32VG1 devices does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service (either restart or deadlock the device) by flooding a device with LMP_AU_rand…

  • CVE-2020-9530MedMar 6, 2020
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. The export component of GetApps(com.xiaomi.mipicks) mishandles the functionality of opening other components. Attackers need to induce users to open specific web pages in a specific network environment. By jumping…

  • CVE-2019-12500MedMay 31, 2019
    risk 0.42cvss 6.5epss 0.01

    The Xiaomi M365 scooter 2019-02-12 before 1.5.1 allows spoofing of "suddenly accelerate" commands. This occurs because Bluetooth Low Energy commands have no server-side authentication check. Other affected commands include suddenly braking, locking, and unlocking.

  • CVE-2019-10875MedApr 5, 2019
    risk 0.42cvss 6.5epss 0.02

    A URL spoofing vulnerability was found in all international versions of Xiaomi Mi browser 10.5.6-g (aka the MIUI native browser) and Mint Browser 1.5.3 due to the way they handle the "q" query parameter. The portion of an https URL before the ?q= substring is not shown to the…

  • CVE-2023-26321MedAug 28, 2024
    risk 0.41cvss 6.3epss 0.01

    A path traversal vulnerability exists in the Xiaomi File Manager application product(international version). The vulnerability is caused by unfiltered special characters and can be exploited by attackers to overwrite and execute code in the file.

  • CVE-2023-26316MedAug 2, 2023
    risk 0.40cvss 6.1epss 0.00

    A XSS vulnerability exists in the Xiaomi cloud service Application product. The vulnerability is caused by Webview's whitelist checking function allowing javascript protocol to be loaded and can be exploited by attackers to steal Xiaomi cloud service account's cookies.

  • CVE-2020-14118MedApr 21, 2022
    risk 0.40cvss 6.1epss 0.01

    An intent redirection vulnerability in the Mi App Store product. This vulnerability is caused by the Mi App Store does not verify the validity of the incoming data, can cause the app store to automatically download and install apps.

  • CVE-2018-13022MedNov 27, 2018
    risk 0.40cvss 6.1epss 0.01

    Cross-site scripting vulnerability in the API 404 page on Xiaomi Mi Router 3 version 2.22.15 allows attackers to execute arbitrary JavaScript via a modified URL path.

  • CVE-2018-20523MedJun 7, 2019
    risk 0.38cvss 5.3epss 0.10

    Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider injection. In other words, a third-party application can read the user's cleartext browser history via an app.provider.query…

  • CVE-2020-14122MedApr 21, 2022
    risk 0.36cvss 5.5epss 0.00

    Some Xiaomi phones have information leakage vulnerabilities, and some of them may be able to forge a specific identity due to the lack of parameter verification, resulting in user information leakage.

  • CVE-2020-14121MedApr 21, 2022
    risk 0.36cvss 5.5epss 0.00

    A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to perform a local silent installation.

  • CVE-2020-14105MedApr 20, 2021
    risk 0.36cvss 5.5epss 0.00

    The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15.

  • CVE-2020-14106MedApr 8, 2021
    risk 0.36cvss 5.5epss 0.01

    The application in the mobile phone can unauthorized access to the list of running processes in the mobile phone, Xiaomi Mobile Phone MIUI < 2021.01.26.

  • CVE-2020-14103MedApr 8, 2021
    risk 0.36cvss 5.5epss 0.01

    The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15.

  • CVE-2019-15475MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi A3 Android device with a build fingerprint of xiaomi/onc_eea/onc:9/PKQ1.181021.001/V10.2.8.0.PFLEUXM:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=28, versionName=9) that allows unauthorized…

  • CVE-2019-15474MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Cepheus Android device with a build fingerprint of Xiaomi/cepheus/cepheus:9/PKQ1.181121.001/V10.2.6.0.PFAMIXM:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=28, versionName=9) that allows…

  • CVE-2019-15473MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi A2 Lite Android device with a build fingerprint of xiaomi/jasmine/jasmine_sprout:9/PKQ1.180904.001/V10.0.2.0.PDIMIFJ:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=28, versionName=9) that…

  • CVE-2019-15472MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi A2 Lite Android device with a build fingerprint of xiaomi/daisy/daisy_sprout:9/PKQ1.180917.001/V10.0.3.0.PDLMIXM:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=28, versionName=9) that allows…

  • CVE-2019-15471MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi Mix 2S Android device with a build fingerprint of Xiaomi/polaris/polaris:8.0.0/OPR1.170623.032/V9.5.19.0.ODGMIFA:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=27, versionName=8.1.0) that…

  • CVE-2019-15470MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Redmi Note 6 Pro Android device with a build fingerprint of xiaomi/tulip/tulip:8.1.0/OPM1.171019.011/V10.2.2.0.OEKMIXM:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=27, versionName=8.1.0) that…

  • CVE-2019-15469MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi Pad 4 Android device with a build fingerprint of Xiaomi/clover/clover:8.1.0/OPM1.171019.019/V9.6.26.0.ODJCNFD:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=27, versionName=8.1.0) that allows…

  • CVE-2019-15468MedNov 14, 2019
    risk 0.36cvss 5.5epss 0.00

    The Xiaomi Mi A2 Lite Android device with a build fingerprint of xiaomi/daisy/daisy_sprout:9/PKQ1.180917.001/V10.0.3.0.PDLMIXM:user/release-keys contains a pre-installed app with a package name of com.huaqin.factory app (versionCode=1, versionName=QL1715_201812071953) that…

  • CVE-2019-8413MedFeb 17, 2019
    risk 0.36cvss 5.5epss 0.00

    On Xiaomi MIX 2 devices with the 4.4.78 kernel, a NULL pointer dereference in the ioctl interface of the device file /dev/elliptic1 or /dev/elliptic0 causes a system crash via IOCTL 0x4008c575 (aka decimal 1074316661).

  • CVE-2020-14117MedApr 21, 2022
    risk 0.35cvss 5.3epss 0.01

    A improper permission configuration vulnerability in Xiaomi Content Center APP. This vulnerability is caused by the lack of correct permission verification in the Xiaomi content center APP, and attackers can use this vulnerability to invoke the sensitive component functions of…

  • CVE-2020-14112MedMar 10, 2022
    risk 0.35cvss 5.3epss 0.01

    Information Leak Vulnerability exists in the Xiaomi Router AX6000. The vulnerability is caused by incorrect routing configuration. Attackers can exploit this vulnerability to download part of the files in Xiaomi Router AX6000.

  • CVE-2020-14130MedSep 16, 2021
    risk 0.35cvss 5.3epss 0.01

    Some js interfaces in the Xiaomi community were exposed, causing sensitive functions to be maliciously called on Xiaomi community app Affected Version <3.0.210809

  • CVE-2024-37664MedJun 17, 2024
    risk 0.34cvss 5.2epss 0.00

    Redmi router RB03 v1.0.57 is vulnerable to TCP DoS or hijacking attacks. An attacker in the same WLAN as the victim can disconnect or hijack the traffic between the victim and any remote server by sending out forged TCP RST messages to evict NAT mappings in the router.

  • CVE-2024-37663MedJun 17, 2024
    risk 0.27cvss 4.1epss 0.00

    Redmi router RB03 v1.0.57 is vulnerable to forged ICMP redirect message attacks. An attacker in the same WLAN as the victim can hijack the traffic between the victim and any remote server by sending out forged ICMP redirect messages.

  • CVE-2019-12762MedJun 6, 2019
    risk 0.27cvss 4.2epss 0.00

    Xiaomi Mi 5s Plus devices allow attackers to trigger touchscreen anomalies via a radio signal between 198 kHz and 203 kHz, as demonstrated by a transmitter and antenna hidden just beneath the surface of a coffee-shop table, aka Ghost Touch.

  • CVE-2019-15467LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi Mi Mix 2S Android device with a build fingerprint of Xiaomi/polaris/polaris:8.0.0/OPR1.170623.032/V9.5.19.0.ODGMIFA:user/release-keys contains a pre-installed app with a package name of com.huaqin.factory app (versionCode=1, versionName=A2060_201801032053) that allows…

  • CVE-2019-15466LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi Redmi 6 Pro Android device with a build fingerprint of xiaomi/sakura_india/sakura_india:8.1.0/OPM1.171019.019/V10.2.6.0.ODMMIXM:user/release-keys contains a pre-installed app with a package name of com.huaqin.factory app (versionCode=1,…

  • CVE-2019-15428LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi Mi Note 2 Android device with a build fingerprint of Xiaomi/scorpio/scorpio:6.0.1/MXB48T/7.1.5:user/release-keys contains a pre-installed app with a package name of com.miui.powerkeeper app (versionCode=40000, versionName=4.0.00) that allows unauthorized wireless…

  • CVE-2019-15427LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi Mi Mix Android device with a build fingerprint of Xiaomi/lithium/lithium:6.0.1/MXB48T/7.1.5:user/release-keys contains a pre-installed app with a package name of com.miui.powerkeeper app (versionCode=40000, versionName=4.0.00) that allows unauthorized wireless…

  • CVE-2019-15426LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi 5S Plus Android device with a build fingerprint of Xiaomi/natrium/natrium:6.0.1/MXB48T/7.1.5:user/release-keys contains a pre-installed app with a package name of com.miui.powerkeeper app (versionCode=40000, versionName=4.0.00) that allows unauthorized wireless…

  • CVE-2019-15415LowNov 14, 2019
    risk 0.21cvss 3.3epss 0.00

    The Xiaomi Redmi 5 Android device with a build fingerprint of xiaomi/vince/vince:7.1.2/N2G47H/V9.5.4.0.NEGMIFA:user/release-keys contains a pre-installed app with a package name of com.huaqin.factory app (versionCode=1, versionName=QL1711_201803291645) that allows unauthorized…