PT-2021-15043 · Huawei · Harmonyos

Published

2021-08-03

·

Updated

2022-05-03

·

CVE-2021-22420

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: HarmonyOS (affected versions not specified)
Description: A component of the HarmonyOS has an issue that allows local attackers to exploit and cause the underlying trust of the application trustlist mechanism to be missing. This could potentially lead to unauthorized control of system or configuration settings.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exposure of Resource to Wrong Sphere

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-22420

Affected Products

Harmonyos