PT-2026-25623 · Openharmony · Openharmony
Published
2026-03-16
·
Updated
2026-03-16
·
CVE-2025-25277
CVSS v3.1
6.3
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N |
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through using incompatible type. This vulnerability can be exploited only in restricted scenarios.
Fix
Type Confusion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openharmony