A path traversal vulnerability exists in the Xiaomi File Manager application product(international version). The vulnerability is caused by unfiltered special characters and can be exploited by attackers to overwrite and execute code in the file.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://trust.mi.com/misrc/bulletins/advisory?cveId=541 |
History
Thu, 12 Sep 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-22 | |
CPEs | cpe:2.3:a:mi:file_manager:1-210567:*:*:*:*:*:*:* |
Wed, 28 Aug 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mi
Mi file Manager |
|
CPEs | cpe:2.3:a:mi:file_manager:*:*:*:*:*:*:*:* | |
Vendors & Products |
Mi
Mi file Manager |
|
Metrics |
ssvc
|
Wed, 28 Aug 2024 08:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A path traversal vulnerability exists in the Xiaomi File Manager application product(international version). The vulnerability is caused by unfiltered special characters and can be exploited by attackers to overwrite and execute code in the file. | |
Title | The international version of Xiaomi File Manager has a path traversal vulnerability | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Xiaomi
Published: 2024-08-28T07:51:28.809Z
Updated: 2024-08-28T13:56:31.842Z
Reserved: 2023-02-22T16:59:28.183Z
Link: CVE-2023-26321
Vulnrichment
Updated: 2024-08-28T13:56:20.792Z
NVD
Status : Analyzed
Published: 2024-08-28T08:15:06.083
Modified: 2024-09-12T16:29:14.277
Link: CVE-2023-26321
Redhat
No data.