Vulnerabilities > MI > Redmi Note 6 PRO Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-11-14 CVE-2019-15470 Unspecified vulnerability in MI Redmi Note 6 PRO Firmware
The Xiaomi Redmi Note 6 Pro Android device with a build fingerprint of xiaomi/tulip/tulip:8.1.0/OPM1.171019.011/V10.2.2.0.OEKMIXM:user/release-keys contains a pre-installed app with a package name of com.qualcomm.qti.callenhancement app (versionCode=27, versionName=8.1.0) that allows other pre-installed apps to perform microphone audio recording via an accessible app component.
local
low complexity
mi
5.5
2019-06-07 CVE-2018-20523 Command Injection vulnerability in MI products
Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider injection.
network
low complexity
mi CWE-77
5.3