CVE-2025-46589
published 2025-05-06CVE-2025-46589: Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
PriorityP430high7.1CVSS 3.1
AVLACLPRLUINSUCHIHAN
EPSS
0.09%
0.5th percentile
Vulnerability of unauthorized access in the app lock module
Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| huawei | harmonyos | — | — |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
vendor_oracle7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rpmm-h287-4q4w: Vulnerability of unauthorized access in the app lock module
Impact: Successful exploitation of this vulnerability will affect integrity and confidenti
ghsa_unreviewed·2025-05-06
CVE-2025-46589 [MEDIUM] CWE-284 GHSA-rpmm-h287-4q4w: Vulnerability of unauthorized access in the app lock module
Impact: Successful exploitation of this vulnerability will affect integrity and confidenti
Vulnerability of unauthorized access in the app lock module
Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Oracle
Oracle Oracle Retail Applications Risk Matrix: Xenvironment (Apache Tomcat) — CVE-2023-46589
vendor_oracle·2025-04-15·CVSS 7.5
CVE-2023-46589 [HIGH] Oracle Oracle Retail Applications Risk Matrix: Xenvironment (Apache Tomcat) — CVE-2023-46589
Oracle Oracle Retail Applications Risk Matrix: Xenvironment (Apache Tomcat) vulnerability
CVE: CVE-2023-46589
CVSS: 7.5
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2025 (APR 2025)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-05-06
Published