CVE-2022-48346: Infoleak
The HwContacts module has a logic bypass vulnerability. Successful exploitation of this vulnerability may affect confidentiality.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-48346?
CVE-2022-48346 is a logic bypass vulnerability in the HwContacts module that can lead to a compromise of confidentiality.
Which software versions are affected by CVE-2022-48346?
CVE-2022-48346 affects Huawei Emui versions 11.0.1, 12.0.0, 12.0.1, 13.0.0, and Huawei Harmonyos versions 2.0, 2.0.1, 2.1.0, 3.0.0, 3.1.0.
What is the severity of CVE-2022-48346?
CVE-2022-48346 has a severity value of 7.5, which is categorized as high severity.
How can CVE-2022-48346 be exploited?
Successful exploitation of CVE-2022-48346 involves bypassing the logic in the HwContacts module.
Where can I find more information about CVE-2022-48346?
You can find more information about CVE-2022-48346 in the security bulletins provided by Huawei: [link](https://consumer.huawei.com/en/support/bulletin/2023/3/) and [link](https://device.harmonyos.com/en/docs/security/update/security-bulletins-202303-0000001529824505).