← volver
CVE-2022-43451

Multiple path traversal in appspawn and nwebspawn services.

CVSS 8.4 HIGHEPSS 0.2%CWE-287
OpenHarmony-v3.1.2 and prior versions had an Multiple path traversal vulnerability in appspawn and nwebspawn services. Local attackers can create arbitrary directories or escape application sandbox.If chained with other vulnerabilities it would allow an unprivileged process to gain full root privileges.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
OpenHarmony · OpenHarmony

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →