CVE-2023-3116

CVSS 3.1 Score 8.1 of 10 (high)

Details

Published Nov 20, 2023
Updated: Nov 24, 2023
CWE ID 22

Summary

CVE-2023-3116 is a vulnerability affecting OpenHarmony versions 3.2.2 and prior. This issue grants local attackers unauthorized access to confidential information or the ability to modify sensitive files due to incorrect default permissions. The vulnerability poses a significant risk, as it can lead to data exposure and unintended changes. Users are strongly advised to update their OpenHarmony installations to a patched version to mitigate this threat. Attackers can exploit this vulnerability to gain privileged access and potentially cause serious damage. The impact of this issue includes data breaches, system instability, and unintended functionality changes.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share