CVE-2025-58277Sensitive Information Exposure in Huawei Harmonyos

Severity
5.5MEDIUMNVD
CNA4.0
EPSS
0.0%
top 99.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 11

Description

Permission verification bypass vulnerability in the Camera app. Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/harmonyos5.0.1, 5.1.0+1
NVDhuawei/harmonyos5.0.1, 5.1.0+1

🔴Vulnerability Details

2
GHSA
GHSA-93f4-5gq2-hjcq: Permission verification bypass vulnerability in the Camera app2025-10-11
CVEList
CVE-2025-58277: Permission verification bypass vulnerability in the Camera app2025-10-11
CVE-2025-58277 — Sensitive Information Exposure | cvebase