CVE-2020-14114: High severity mi smarthome vulnerability
Published Jul 22, 2022
·Updated
information leakage vulnerability exists in the Xiaomi SmartHome APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive information.
Affected Software
1 affected component
Mi SmartHome<=6.4.701
Event History
Jul 22, 2022
CVE Published
via MITRE·03:32 PM
Data Sourced
via MITRE·03:32 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this information leakage vulnerability in Xiaomi SmartHome APP?
The vulnerability ID is CVE-2020-14114.
2
What is the cause of this information leakage vulnerability?
The vulnerability is caused by illegal calls of some sensitive JS interfaces.
3
How can this vulnerability be exploited?
Attackers can exploit this vulnerability to leak sensitive information.
4
What is the affected software version?
The affected software version is mi SmartHome 6.4.701.
5
What is the severity rating of this vulnerability?
The severity of this vulnerability is high with a CVSS score of 7.5.