Lucene search

K
cve3836d913-7555-4dd0-a509-f5667fdf5fe4CVE-2023-23428
HistoryDec 29, 2023 - 3:15 a.m.

CVE-2023-23428

2023-12-2903:15:09
CWE-269
3836d913-7555-4dd0-a509-f5667fdf5fe4
web.nvd.nist.gov
10
honor
products
privilege assignment
vulnerability
exploit
nvd

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.4 High

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.1%

Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.

Affected configurations

NVD
Node
hihonormagic_osRange<7.2.0.102

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Magic OS",
    "vendor": "Honor",
    "versions": [
      {
        "lessThan": "7.2.0.102",
        "status": "affected",
        "version": "7.0",
        "versionType": "custom"
      }
    ]
  }
]

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.4 High

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.1%

Related for CVE-2023-23428