CVE-2023-41305: Weak Encryption
Vulnerability of 5G messages being sent without being encrypted in a VPN environment in the SMS message module. Successful exploitation of this vulnerability may affect confidentiality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-41305?
The severity of CVE-2023-41305 is high with a severity value of 7.5.
Which software versions are affected by CVE-2023-41305?
CVE-2023-41305 affects Huawei Emui versions 11.0.1, 12.0, 12.0.1, 13.0.0, and Huawei Harmonyos versions 2.0.0, 2.0.1, 3.0.0, 3.1.0, and 4.0.0.
How does CVE-2023-41305 impact confidentiality?
Successful exploitation of CVE-2023-41305 may affect confidentiality.
Where can I find more information about CVE-2023-41305?
You can find more information about CVE-2023-41305 at the following references: [Link 1](https://consumer.huawei.com/en/support/bulletin/2023/9/), [Link 2](https://device.harmonyos.com/en/docs/security/update/security-bulletins-202309-0000001638925158).
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-41305?
The Common Weakness Enumeration (CWE) ID for CVE-2023-41305 is 326.