Xiaomi Mi Connect Service App Unauthorized Access Vulnerability

Vulnerability

A vulnerability allowing unauthorized access to a victim's device exists in the Xiaomi Mi Connect Service App, version 3.1.895.10. This issue arises from a flaw in the validation logic, which can be exploited by attackers to bypass access controls.

Impact

Exploitation of this vulnerability allows attackers to gain unauthorized access to the victim's device.

Remediation

Users can upgrade to version 3.1.921.10 to address this vulnerability.

Added: Jun 23, 2025, 10:22 AM
Updated: Jun 23, 2025, 10:22 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
5.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.