CVE-2025-54611

EUVD-2025-23685
EXTRA_REFERRER resource read vulnerability in the Gallery module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.3 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
huaweiCNA
7.3 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
huaweiemui
12.0.0
huaweiemui
13.0.0
huaweiemui
14.0.0
huaweiemui
15.0.0
huaweiharmonyos
2.0.0
huaweiharmonyos
2.1.0
huaweiharmonyos
3.0.0
huaweiharmonyos
3.1.0
huaweiharmonyos
4.0.0
huaweiharmonyos
4.2.0
huaweiharmonyos
4.3.0
huaweiharmonyos
4.3.1
𝑥
= Vulnerable software versions
Common Weakness Enumeration