CVE Published: 28/08/2024 |
CVE Updated: 28/08/2024 |
CVE Year: 2023 Source: Xiaomi |
Vendor: Xiaomi |
Product: Xiaomi File Manager App International Version Status : PUBLISHED
CVE-2023-26321 Description
A path traversal vulnerability exists in the Xiaomi File Manager application product(international version). The vulnerability is caused by unfiltered special characters and can be exploited by attackers to overwrite and execute code in the file.
Metrics
CVSS Version: 3.1 |
Base Score: 6.3 MEDIUM Vector: CVSS:3.1/AV:P/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H