CVE-2022-48295: High severity emui 5.0 vulnerability
The IHwAntiMalPlugin interface lacks permission verification. Successful exploitation of this vulnerability can lead to filling problems (batch installation of applications).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-48295?
CVE-2022-48295 is classified as a high severity vulnerability due to the potential for abuse in application installations.
What applications are affected by CVE-2022-48295?
CVE-2022-48295 affects Huawei EMUI versions 11.0.1, 12.0.0, 12.0.1, and HarmonyOS version 2.0.
How do I fix CVE-2022-48295?
To mitigate CVE-2022-48295, users should update their affected Huawei devices to the latest firmware patch recommended by the manufacturer.
What can attackers do with CVE-2022-48295?
Exploitation of CVE-2022-48295 could allow attackers to bypass permission checks and install applications in bulk without proper verification.
Is CVE-2022-48295 being actively exploited?
As of now, there have been reports indicating that CVE-2022-48295 is under scrutiny for potential exploitation in the wild.