CVE-2023-1694Improper Privilege Management in Huawei Harmonyos

Severity
7.5HIGHNVD
EPSS
0.1%
top 71.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 20

Description

The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

NVDhuawei/harmonyos< 3.1.0
CVEListV5huawei/emui11.0.1, 13.0.0+1
NVDhuawei/emui11.0.1, 13.0.0+1
CVEListV5huawei/harmonyos3.1.0

🔴Vulnerability Details

2
GHSA
GHSA-62q6-562p-89vx: The Settings module has the file privilege escalation vulnerability2023-05-20
CVEList
CVE-2023-1694: The Settings module has the file privilege escalation vulnerability2023-05-20
CVE-2023-1694 — Improper Privilege Management in Huawei | cvebase