CVE Vulnerabilities

CVE-2023-34167

Authentication Bypass by Spoofing

Published: Jun 19, 2023 | Modified: Dec 12, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.

Weakness

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Affected Software

NameVendorStart VersionEnd Version
EmuiHuawei11.0.1 (including)11.0.1 (including)
EmuiHuawei12.0.0 (including)12.0.0 (including)
EmuiHuawei12.0.1 (including)12.0.1 (including)
EmuiHuawei13.0.0 (including)13.0.0 (including)

References