CVE-2022-48302: High severity emui 5.0 vulnerability
Published Feb 9, 2023
·Updated
The AMS module has a vulnerability of lacking permission verification in APIs.Successful exploitation of this vulnerability may affect data confidentiality.
Affected Software
6 affected components
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Emui=12.0.1
Huawei Harmonyos=2.0
Huawei Harmonyos=2.1
Huawei Harmonyos=3.0.0
Event History
Feb 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-48302?
The severity of CVE-2022-48302 is high with a severity value of 7.5.
2
Which software versions are affected by CVE-2022-48302?
CVE-2022-48302 affects Huawei Emui 11.0.1, Huawei Emui 12.0.0, Huawei Emui 12.0.1, Huawei Harmonyos 2.0, Huawei Harmonyos 2.1, and Huawei Harmonyos 3.0.0.
3
What is the vulnerability in the AMS module?
The vulnerability in the AMS module is the lack of permission verification in APIs.
4
How does the vulnerability in the AMS module affect data confidentiality?
Successful exploitation of the vulnerability in the AMS module may affect data confidentiality.
5
How can I fix CVE-2022-48302?
To fix CVE-2022-48302, it is recommended to follow the mitigation steps provided by Huawei in their security bulletin.