Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2023/10/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-202310-0000001663676540 | vendor advisory |