← All CVEs

CVE-2024-45347

critical · 9.6

An unauthorized access vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to Unauthorized access to the victim’s device.

9.6
CVSS
0.3%
EPSS (exploit prob.)
18th
EPSS percentile
2025-06-23
Published

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-287

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2024-45347