5.5

CVE-2024-51521

Input parameter verification vulnerability in the background service module
Impact: Successful exploitation of this vulnerability may affect availability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Harmonyos Version 5.0.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.11% 0.013
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Huawei 5.7 2.5 2.7
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:L
CWE-269 Improper Privilege Management

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

https://consumer.huawei.com/en/support/bulletin/2024/11/
Vendor Advisory