Impact
This vulnerability is a permission control flaw in the Gallery module that can allow an attacker to access confidential information. The weakness permits disclosure of private media or related data, thereby impacting the confidentiality of user content.
Affected Systems
The flaw affects Huawei devices running EMUI and HarmonyOS, specifically the Gallery module. No precise version numbers are supplied, so all versions of these operating systems that include the Gallery application may be susceptible.
Risk and Exploitability
The CVSS score of 6.2 indicates moderate severity. EPSS data is not available, and the flaw is not listed in the CISA KEV catalog. Based on the description, it is inferred that exploitation requires an attacker to leverage improper permission checks within the Gallery app, most likely through local user interaction or compromised application privileges. The risk is therefore moderate and the attack vector is most plausibly local or requires the attacker to gain elevated access to the device.
OpenCVE Enrichment