Impact
This vulnerability is a permission control flaw in the manufacturability design module of Huawei HarmonyOS, identified as CWE-840. If exploited, an attacker could potentially interfere with the normal availability of the system by abusing elevated permissions granted to the module. The official description indicates that a successful exploit may affect availability, but does not detail the exact consequences beyond this disruption.
Affected Systems
Huawei HarmonyOS. No specific affected version information is provided by the CNA data.
Risk and Exploitability
The CVSS score of 5.9 classifies the issue as moderate severity. The EPSS score is not available, and the vulnerability is not listed in CISA’s KEV catalog. Attack vector details are not disclosed; it is likely that exploitation would require access to the manufacturability design module, potentially through local or privileged channels. Overall risk is moderate, with limited evidence of active exploitation at this time.
OpenCVE Enrichment