← Back

CVE-2022-42488

nvd nist
Published: Oct 14, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

OpenHarmony-v3.1.2 and prior versions have a Missing permission validation vulnerability in param service of startup subsystem. An malicious application installed on the device could elevate its privileges to the root user, disable security features, or cause DoS by disabling particular services.

Affected (1)

1 product
Openharmony
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 3.1 to 3.1.2

References (2)

Timeline

No history available yet.