CVE-2024-45352
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-45352 is a newly disclosed code execution vulnerability that affects the Xiaomi smarthome application. The issue arises due to insufficient input validation, enabling attackers to inject malicious code and execute it on vulnerable systems. This vulnerability poses a significant risk as it can lead to unauthorized system access and data theft. Users are strongly encouraged to update their Xiaomi smarthome application as soon as a patch becomes available to mitigate this threat. Failure to do so may allow attackers to exploit the vulnerability and compromise the security of the affected system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.