OpenHarmony是中国OpenAtom Foundation基金会的一种鸿蒙操作系统的开源项目。 OpenHarmony-v3.1.2 及之前版本存在授权问题漏洞,本地攻击者利用该漏洞可以绕过权限控制并获取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OpenHarmony | OpenHarmony | OpenHarmony-v3.1.x-Release ~ 3.1.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-38700 | 8.8 HIGH | multimedia subsystem has a permission bypass vulnerability. LAN attackers can bypass permi |
| CVE-2022-36423 | 7.4 HIGH | Incorrect configuration of the cJSON library lead a Stack overflow vulnerability during re |
| CVE-2022-38081 | 6.2 MEDIUM | Tokensync in security subsystem has a permission bypass vulnerability. LAN attackers can b |
| CVE-2022-38701 | 6.2 MEDIUM | IPC in communication subsystem has a heap overflow vulnerability. Local attackers can trig |
No comments yet