Home

Description

Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability.

PUBLISHED Reserved 2024-12-26 | Published 2025-01-08 | Updated 2025-01-08 | Assigner huawei




MEDIUM: 6.7CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-94 Improper Control of Generation of Code ('Code Injection')

Product status

Default status
unaffected

4.2.0
affected

4.0.0
affected

3.1.0
affected

3.0.0
affected

2.1.0
affected

2.0.0
affected

Default status
unaffected

14.0.0
affected

13.0.0
affected

12.0.0
affected

References

consumer.huawei.com/en/support/bulletin/2025/1/

cve.org (CVE-2024-56448)

nvd.nist.gov (CVE-2024-56448)

Download JSON