CVE-2023-0116Missing Authentication for Critical Function in Huawei Emui

Severity
7.5HIGHNVD
EPSS
0.1%
top 69.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 26

Description

The reminder module lacks an authentication mechanism for broadcasts received. Successful exploitation of this vulnerability may affect availability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

CVEListV5huawei/emui12.0.0, 12.0.1, 13.0.0+2
NVDhuawei/emui12.0, 12.0.1, 13.0.0+2
CVEListV5huawei/harmonyos5 versions+4

🔴Vulnerability Details

2
CVEList
CVE-2023-0116: The reminder module lacks an authentication mechanism for broadcasts received2023-05-26
GHSA
GHSA-925v-vc5j-fmvg: The reminder module lacks an authentication mechanism for broadcasts received2023-05-26
CVE-2023-0116 — Huawei Emui vulnerability | cvebase