CVE-2023-52546

Vulnerability of package name verification being bypassed in the Calendar app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*

History

28 Mar 2025, 20:15

Type Values Removed Values Added
CWE CWE-345

09 Dec 2024, 13:54

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Huawei emui
Huawei
Huawei harmonyos
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*
References () https://https://consumer.huawei.com/en/support/bulletin/2024/3/ - () https://https://consumer.huawei.com/en/support/bulletin/2024/3/ - Broken Link
References () https://https://device.harmonyos.com/en/docs/security/update/security-bulletins-202403-0000001667644725 - () https://https://device.harmonyos.com/en/docs/security/update/security-bulletins-202403-0000001667644725 - Broken Link

Information

Published : 2024-04-08 09:15

Updated : 2025-03-28 20:15


NVD link : CVE-2023-52546

Mitre link : CVE-2023-52546

CVE.ORG link : CVE-2023-52546


JSON object : View

Products Affected

huawei

  • harmonyos
  • emui
CWE
NVD-CWE-noinfo CWE-345

Insufficient Verification of Data Authenticity