Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-whc8-x8vc-w8v2

Опубликовано: 10 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.

The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.

EPSS

Процентиль: 7%
0.00026
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-843

Связанные уязвимости

CVSS3: 4
nvd
почти 3 года назад

The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.

EPSS

Процентиль: 7%
0.00026
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-843