CVE Vulnerabilities

CVE-2025-31170

Authentication Bypass by Spoofing

Published: Apr 07, 2025 | Modified: May 07, 2025
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.

Weakness

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Affected Software

NameVendorStart VersionEnd Version
EmuiHuawei14.0.0 (including)14.0.0 (including)
HarmonyosHuawei4.0.0 (including)4.0.0 (including)
HarmonyosHuawei4.3.0 (including)4.3.0 (including)
HarmonyosHuawei5.0.0 (including)5.0.0 (including)

References