CVE-2023-46756: Medium severity harmonyos vulnerability
Published Nov 8, 2023
·Updated
Permission control vulnerability in the window management module. Successful exploitation of this vulnerability may cause malicious pop-up windows.
Affected Software
10 affected components
Huawei Harmonyos=2.0.0
Huawei Harmonyos=2.0.1
Huawei Harmonyos=2.1.0
Huawei Harmonyos=3.0.0
Huawei Harmonyos=3.1.0
Huawei Harmonyos=4.0.0
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Emui=12.0.1
Huawei Emui=13.0.0
Event History
Nov 8, 2023
CVE Published
via MITRE·10:12 AM
Data Sourced
via MITRE·10:12 AM
DescriptionWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-46756?
CVE-2023-46756 is a permission control vulnerability in the window management module that can cause malicious pop-up windows.
2
Which software versions are affected by CVE-2023-46756?
CVE-2023-46756 affects Huawei HarmonyOS versions 2.0.0, 2.0.1, 2.1.0, 3.0.0, 3.1.0, and 4.0.0, as well as Huawei Emui versions 11.0.1, 12.0.0, 12.0.1, and 13.0.0.
3
How severe is CVE-2023-46756?
CVE-2023-46756 has a severity rating of 5.3, which is considered medium.
4
How can I fix CVE-2023-46756?
To fix CVE-2023-46756, update your Huawei HarmonyOS or Huawei Emui software to the latest version available.
5
Where can I find more information about CVE-2023-46756?
You can find more information about CVE-2023-46756 in the Huawei support bulletin and the HarmonyOS security bulletins.