CVE-2021-37103Incorrect Default Permissions in Huawei Emui

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 93.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 25
Latest updateFeb 26

Description

There is an improper permission management vulnerability in the Wallet apps. Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

CVEListV5huawei/emui6 versions+5
NVDhuawei/emui6 versions+5
CVEListV5huawei/magic_ui5 versions+4
NVDhuawei/magic_ui5 versions+4

🔴Vulnerability Details

2
GHSA
GHSA-6hwj-35vc-w7c7: There is an improper permission management vulnerability in the Wallet apps2022-02-26
CVEList
CVE-2021-37103: There is an improper permission management vulnerability in the Wallet apps2022-02-25
CVE-2021-37103 — Incorrect Default Permissions | cvebase