CVE-2023-41304

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Oct 11, 2023
Updated: Oct 16, 2023
CWE ID 754

Summary

CVE-2023-41304 is a parameter verification vulnerability identified in the window module. This issue permits an attacker to manipulate window size parameters, resulting in the affected application's window adopting the dimensions of a floating window. Successful exploitation of this vulnerability could potentially disrupt the user experience, causing unexpected window resizing. Although it may seem trivial, this issue can create accessibility and usability challenges, making it essential for affected organizations to apply the necessary patches as soon as possible to mitigate the risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HarmonyOS
  • Huawei EMUI

Affected Vendors

  • Huawei Technologies