CVE-2024-56447
08.01.2025, 03:15
Vulnerability of improper permission control in the window management module Impact: Successful exploitation of this vulnerability may affect service confidentiality.Enginsight
Vendor | Product | Version |
---|---|---|
huawei | emui | 12.0.0 |
huawei | emui | 13.0.0 |
huawei | emui | 14.0.0 |
huawei | harmonyos | 2.0.0 |
huawei | harmonyos | 2.1.0 |
huawei | harmonyos | 3.0.0 |
huawei | harmonyos | 3.1.0 |
huawei | harmonyos | 4.0.0 |
huawei | harmonyos | 4.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-269 - Improper Privilege ManagementThe software does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
- CWE-276 - Incorrect Default PermissionsDuring installation, installed file permissions are set to allow anyone to modify those files.