CVE-2023-44116

EUVD-2023-48475
Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
Affected Products (NVD)
VendorProductVersion
huaweiharmonyos
2.0.0
huaweiharmonyos
2.0.1
huaweiharmonyos
2.1.0
huaweiharmonyos
3.0.0
huaweiharmonyos
3.1.0
huaweiharmonyos
4.0.0
huaweiemui
11.0.1
huaweiemui
12.0.0
huaweiemui
12.0.1
huaweiemui
13.0.0
𝑥
= Vulnerable software versions