CVE-2022-48301: High severity emui 5.0 vulnerability
Published Feb 9, 2023
·Updated
The bundle management module lacks permission verification in some APIs. Successful exploitation of this vulnerability may restore the pre-installed apps that have been uninstalled.
Affected Software
6 affected components
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Emui=12.0.1
Huawei Harmonyos=2.0
Huawei Harmonyos=2.1.0
Huawei Harmonyos=3.0.0
Remediation
Event History
Feb 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-48301?
The severity of CVE-2022-48301 is high with a CVSS score of 7.5.
2
Which software versions are affected by CVE-2022-48301?
CVE-2022-48301 affects Huawei Emui versions 11.0.1, 12.0.0, and 12.0.1, as well as Huawei Harmonyos versions 2.0, 2.1.0, and 3.0.0.
3
What is the impact of CVE-2022-48301?
Successful exploitation of CVE-2022-48301 may restore the pre-installed apps that have been uninstalled.
4
How can I fix CVE-2022-48301?
To fix CVE-2022-48301, it is recommended to apply the security updates provided by Huawei for the affected software versions.
5
Where can I find more information about CVE-2022-48301?
You can find more information about CVE-2022-48301 on the Huawei support page and the HarmonyOS documentation.