4.3

CVE-2022-44548

There is a vulnerability in permission verification during the Bluetooth pairing process. Successful exploitation of this vulnerability may cause the dialog box for confirming the pairing not to be displayed during Bluetooth pairing.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Harmonyos Version 2.0
Huawei ≫ Harmonyos Version 2.1
Huawei ≫ Harmonyos Version 3.0.0
Huawei ≫ Emui Version 11.0.1
Huawei ≫ Emui Version 12.0.0
Huawei ≫ Emui Version 12.0.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.19% 0.085
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 2.8 1.4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CISA-ADP 4.3 2.8 1.4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CWE-276 Incorrect Default Permissions

During installation, installed file permissions are set to allow anyone to modify those files.

https://consumer.huawei.com/en/support/bulletin/2022/11/
Vendor Advisory
https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202211-0000001441016433
Vendor Advisory