CVE-2026-24920

CWE-2643 documents3 sources
Severity
5.5MEDIUM
EPSS
0.0%
top 99.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 6

Description

Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 2.5 | Impact: 3.6

Affected Packages4 packages

CVEListV5huawei/emui14.2.0, 15.0.0+1
NVDhuawei/emui14.2.0, 15.0.0+1
CVEListV5huawei/harmonyos4.2.0, 4.3.0, 4.3.1+2
NVDhuawei/harmonyos4.2.0, 4.3.0, 4.3.1+2

🔴Vulnerability Details

2
CVEList
CVE-2026-24920: Permission control vulnerability in the AMS module2026-02-06
GHSA
GHSA-wrhc-6fph-g372: Permission control vulnerability in the AMS module2026-02-06
CVE-2026-24920 (MEDIUM CVSS 5.5) | Permission control vulnerability in | cvebase.io