CVE-2020-14120: Mi Miui
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Some Xiaomi models have a vulnerability in a certain application. The vulnerability is caused by the lack of checksum when using a three-party application to pass in parameters, and attackers can induce users to install a malicious app and use the vulnerability to achieve elevated privileges, making the normal services of the system affected.
Affected products
- Mi Miui: version 12.5 only
Published 2022-04-21. Last modified 2026-06-17.