CVE-2023-44097Sensitive Information Exposure in Huawei Emui

Severity
7.5HIGHNVD
EPSS
0.1%
top 76.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 11

Description

Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

CVEListV5huawei/emui12.0.1, 13.0.0+1
NVDhuawei/emui12.0.1, 13.0.0+1
CVEListV5huawei/harmonyos2.0.1, 3.0.0+1
NVDhuawei/harmonyos2.0.1, 3.0.0+1

🔴Vulnerability Details

2
CVEList
CVE-2023-44097: Vulnerability of the permission to access device SNs being improperly managed2023-10-11
GHSA
GHSA-r2vg-jc2p-mvwr: Vulnerability of the permission to access device SNs being improperly managed2023-10-11
CVE-2023-44097 — Sensitive Information Exposure | cvebase