CVE-2023-6045
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Nov 20, 2023
Updated: Nov 24, 2023
CWE ID 843
Summary
CVE-2023-6045 is a vulnerability affecting OpenHarmony version 3.2.2 and earlier releases. This issue permits a local attacker to execute arbitrary code in pre-installed apps through type confusion. The attacker can exploit this vulnerability by manipulating the data types in the affected software, leading to code injection and potentially serious consequences, such as system compromise or data theft. Developers are advised to update to the latest version of OpenHarmony or take other mitigating measures to protect against this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Openharmony
Affected Vendors
- Open Harmony