CVE Vulnerabilities

CVE-2023-34167

Authentication Bypass by Spoofing

Published: Jun 19, 2023 | Modified: Jun 27, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.

Weakness

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Affected Software

Name Vendor Start Version End Version
Emui Huawei 11.0.1 (including) 11.0.1 (including)
Emui Huawei 12.0.0 (including) 12.0.0 (including)
Emui Huawei 12.0.1 (including) 12.0.1 (including)
Emui Huawei 13.0.0 (including) 13.0.0 (including)

References