CVE-2021-22308
Published on: 06/03/2021 12:00:00 AM UTC
Last Modified on: 05/03/2022 04:04:00 PM UTC
Certain versions of Emui from Huawei contain the following vulnerability:
There is a Business Logic Errors vulnerability in Huawei Smartphone. The malicious apps installed on the device can keep taking screenshots in the background. This issue does not cause system errors, but may cause personal information leakage.
- CVE-2021-22308 has been assigned by
[email protected] to track the vulnerability - currently rated as LOW severity.
CVSS3 Score: 3.3 - LOW
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
LOCAL | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | LOW | NONE | NONE |
CVSS2 Score: 2.1 - LOW
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
LOCAL | LOW | NONE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
PARTIAL | NONE | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
February | consumer.huawei.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Huawei | Emui | 10.0.0 | All | All | All |
Application | Huawei | Emui | 10.1.0 | All | All | All |
Application | Huawei | Emui | 10.1.1 | All | All | All |
Application | Huawei | Emui | 11.0.0 | All | All | All |
Operating System | Huawei | Emui | 10.0.0 | All | All | All |
Operating System | Huawei | Emui | 10.1.0 | All | All | All |
Operating System | Huawei | Emui | 10.1.1 | All | All | All |
Operating System | Huawei | Emui | 11.0.0 | All | All | All |
Application | Huawei | Magic Ui | 3.0.0 | All | All | All |
Application | Huawei | Magic Ui | 3.1.0 | All | All | All |
Application | Huawei | Magic Ui | 3.1.1 | All | All | All |
Application | Huawei | Magic Ui | 4.0.0 | All | All | All |
Operating System | Huawei | Magic Ui | 3.0.0 | All | All | All |
Operating System | Huawei | Magic Ui | 3.1.0 | All | All | All |
Operating System | Huawei | Magic Ui | 3.1.1 | All | All | All |
Operating System | Huawei | Magic Ui | 4.0.0 | All | All | All |
- cpe:2.3:a:huawei:emui:10.0.0:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:emui:10.1.0:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:emui:10.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:emui:11.0.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:emui:10.0.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:emui:10.1.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:emui:10.1.1:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:emui:11.0.0:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:magic_ui:3.0.0:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:magic_ui:3.1.0:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:magic_ui:3.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:huawei:magic_ui:4.0.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:magic_ui:3.0.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:magic_ui:3.1.0:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:magic_ui:3.1.1:*:*:*:*:*:*:*:
- cpe:2.3:o:huawei:magic_ui:4.0.0:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2021-22308 : There is a Business Logic Errors vulnerability in #Huawei Smartphone. The malicious apps installed… twitter.com/i/web/status/1… | 2021-06-03 16:04:55 |
![]() |
CVE-2021-22308 There is a Business Logic Errors vulnerability in Huawei Smartphone. The malicious apps installed on… twitter.com/i/web/status/1… | 2021-06-04 07:10:32 |
![]() |
CVE-2021-22308 | 2021-06-03 16:41:10 |