← back
CVE-2023-0083mediumCWE-843

The ArkUI framework subsystem doesn't check the input parameter,causing type confusion and invalid memory access.

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4epss 0.2%
exploitation probability
0.2%top 94% of all CVEs
observed exploitation
nono source reports it
The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has an Improper Input Validation vulnerability which local attackers can exploit this vulnerability to send malicious data, causing the current application to crash.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N