CVE-2023-39394Improper Privilege Management in Huawei Emui

CWE-2643 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.1%
top 81.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 13

Description

Vulnerability of API privilege escalation in the wifienhance module. Successful exploitation of this vulnerability may cause the arp list to be modified.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

CVEListV5huawei/emui12.0.1, 13.0.0+1
NVDhuawei/emui12.0.1, 13.0.0+1
CVEListV5huawei/harmonyos2.0.1, 3.0.0, 3.1.0+2
NVDhuawei/harmonyos2.0.1, 3.0.0, 3.1.0+2

🔴Vulnerability Details

2
GHSA
GHSA-8c7j-6hq4-39q3: Vulnerability of API privilege escalation in the wifienhance module2023-08-13
CVEList
CVE-2023-39394: Vulnerability of API privilege escalation in the wifienhance module2023-08-13