6.5
CVE-2025-12736
- EPSS 0.01%
- Veröffentlicht 16.03.2026 07:09:13
- Zuletzt bearbeitet 17.03.2026 15:40:33
- Quelle scy@openharmony.io
- CVE-Watchlists
- Unerledigt
multimedia_audio_standard has an insecure storage of sensitive information vulnerability
in OpenHarmony v5.0.3 and prior versions allow a local attacker case sensitive information leak through use of uninitialized resource.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Openatom ≫ Openharmony Version5.0.3 SwEdition-
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.004 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| scy@openharmony.io | 6.5 | 2 | 4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.