CVE-2023-52097

Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulnerability may affect service confidentiality.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*

History

13 Mar 2025, 14:47

Type Values Removed Values Added
CPE cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.0.0:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Huawei emui
Huawei
Huawei harmonyos
References () https://consumer.huawei.com/en/support/bulletin/2024/2/ - () https://consumer.huawei.com/en/support/bulletin/2024/2/ - Vendor Advisory
References () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - Vendor Advisory

12 Mar 2025, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 7.5

21 Nov 2024, 08:39

Type Values Removed Values Added
References () https://consumer.huawei.com/en/support/bulletin/2024/2/ - () https://consumer.huawei.com/en/support/bulletin/2024/2/ -
References () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 -

12 Nov 2024, 21:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

20 Feb 2024, 19:50

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de las restricciones del servicio en primer plano que se omiten en el módulo NMS. La explotación exitosa de esta vulnerabilidad puede afectar la confidencialidad del servicio.

18 Feb 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-18 03:15

Updated : 2025-03-13 14:47


NVD link : CVE-2023-52097

Mitre link : CVE-2023-52097

CVE.ORG link : CVE-2023-52097


JSON object : View

Products Affected

huawei

  • emui
  • harmonyos
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo