Title: Local Attacker Exploits Type Confusion to Execute Arbitrary Code in Pre-installed Apps in OpenHarmony v3.2.2 and Prior Versions

Title: Local Attacker Exploits Type Confusion to Execute Arbitrary Code in Pre-installed Apps in OpenHarmony v3.2.2 and Prior Versions

CVE-2023-6045 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

in OpenHarmony v3.2.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through type confusion.

Learn more about our Web Application Penetration Testing UK.