HIGH
Vulnerability of unauthorized API access in the PMS module
Published Sep 25, 2023
7.5
HIGHCVSS 3.1
EPSS 0.42%
Description
Vulnerability of unauthorized API access in the PMS module. Successful exploitation of this vulnerability may cause features to perform abnormally.
Affected products
-
- Version 12.0.0StatusaffectedConstraints-
- Version 12.0.1StatusaffectedConstraints-
- Version 13.0.0StatusaffectedConstraints-
- Version
-
- Version 2.0.0StatusaffectedConstraints-
- Version 2.0.1StatusaffectedConstraints-
- Version 2.1.0StatusaffectedConstraints-
- Version 3.0.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- https://consumer.huawei.com/en/support/bulletin/2023/9/ Vendor Advisory
- https://device.harmonyos.com/en/docs/security/update/security-bulletins-202309-0000001638925158 Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://consumer.huawei.com/en/support/bulletin/2023/9/ | Vendor Advisory | |
| https://device.harmonyos.com/en/docs/security/update/security-bulletins-202309-0000001638925158 | Vendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner huawei
Published Sep 25, 2023
Updated Sep 24, 2024
Reserved Aug 28, 2023
Link CVE-2023-41301
CISA Vulnrichment
Updated Sep 24, 2024