iAware Module Priv Escalation: Malicious Apps Auto-Start on Boot
CVE-2022-39000 Published on September 16, 2022
The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vulnerability will cause malicious apps to automatically start upon system startup.
Products Associated with CVE-2022-39000
Want to know whenever a new CVE is published for Huawei products? stack.watch will email you.
Affected Versions
Huawei HarmonyOS:- Version 2.0 is affected.
- Version 2.1 is affected.
- Version 12.0.0 is affected.
- Version 11.0.1 is affected.
- Version 11.0.0 is affected.
- Version 4.0.0 is affected.
Exploit Probability
EPSS
0.25%
Percentile
47.78%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.