CVE-2023-52544Path Traversal in Huawei Emui

CWE-22Path Traversal3 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.1%
top 81.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 8

Description

Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages4 packages

CVEListV5huawei/emui12.0.0, 13.0.0+1
NVDhuawei/emui12.0.0, 13.0.0+1
CVEListV5huawei/harmonyos5 versions+4
NVDhuawei/harmonyos5 versions+4

🔴Vulnerability Details

2
GHSA
GHSA-m9v7-qqvg-7f89: Vulnerability of file path verification being bypassed in the email module2024-04-08
CVEList
CVE-2023-52544: Vulnerability of file path verification being bypassed in the email module2024-04-08
CVE-2023-52544 — Path Traversal in Huawei Emui | cvebase