CVE-2023-1693
20.05.2023, 15:15
The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.Enginsight
Vendor | Product | Version |
---|---|---|
huawei | emui | 11.0.1 |
huawei | emui | 13.0.0 |
huawei | harmonyos | 𝑥 < 3.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-269 - Improper Privilege ManagementThe software does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
- CWE-276 - Incorrect Default PermissionsDuring installation, installed file permissions are set to allow anyone to modify those files.
References