CVE-2022-41576: Code Injection
The rphone module has a script that can be maliciously modified.Successful exploitation of this vulnerability may cause irreversible programs to be implanted on user devices.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-41576?
CVE-2022-41576 is a vulnerability in the rphone module that allows malicious modification of a script, potentially leading to the implantation of irreversible programs on user devices.
What is the severity of CVE-2022-41576?
CVE-2022-41576 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2022-41576?
Huawei Emui 11.0.1, Huawei Emui 12.0.0, and Huawei Harmonyos 2.0 are affected by CVE-2022-41576.
How can CVE-2022-41576 be exploited?
CVE-2022-41576 can be exploited by modifying the rphone module script in a malicious way.
Where can I find more information about CVE-2022-41576?
You can find more information about CVE-2022-41576 at the following references: [Huawei Support Bulletin](https://consumer.huawei.com/en/support/bulletin/2022/10/) and [HarmonyOS Security Bulletins](https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202210-0000001416095697).