Huawei HarmonyOS Improper Authentication Vulnerability in ANS System Service Module

Vulnerability

A vulnerability has been identified in the ANS system service module of Huawei's HarmonyOS. This vulnerability arises from improper authentication, which could lead to abnormal feature performance. Affected versions include HarmonyOS 3.0.0, 3.1.0, 2.0.0, 2.1.0, EMUI 13.0.0, and EMUI 12.0.0.

Impact

Exploitation of this vulnerability may cause features to perform abnormally.

Remediation

Users can refer to the Huawei Security Bulletin for January 2025 for guidance on applying the latest security updates.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.