First published: Thu Apr 18 2019(Updated: )
A vulnerability was found in the MIUI OS version 10.1.3.0 that allows a physically proximate attacker to bypass Lockscreen based authentication via the Wallpaper Carousel application to obtain sensitive Clipboard data and the user's stored credentials (partially). This occurs because of paste access to a social media login page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MIUI | =10.1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11015 is considered a high-severity vulnerability due to its potential to expose sensitive user information.
To mitigate CVE-2019-11015, it is recommended to update to the latest version of MIUI OS that addresses this vulnerability.
CVE-2019-11015 affects users of the MIUI OS version 10.1.3.0 on compatible devices.
CVE-2019-11015 enables a physically proximate attacker to bypass the lock screen and access sensitive clipboard data.
The impact of CVE-2019-11015 includes the potential exposure of stored credentials and sensitive clipboard data.