CVE-2025-58278Sensitive Information Exposure in Huawei Harmonyos

Severity
5.5MEDIUMNVD
CNA6.2
EPSS
0.0%
top 98.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 11

Description

Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this vulnerability may affect service confidentiality.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5huawei/harmonyos5.0.1
NVDhuawei/harmonyos5.0.1

🔴Vulnerability Details

2
CVEList
CVE-2025-58278: Identity authentication bypass vulnerability in the Gallery app2025-10-11
GHSA
GHSA-7837-7h47-c35x: Identity authentication bypass vulnerability in the Gallery app2025-10-11
CVE-2025-58278 — Sensitive Information Exposure | cvebase