Huawei HarmonyOS Improper Log Information Control Vulnerability in UI Framework Module

Vulnerability

A vulnerability has been identified in the UI framework module of Huawei HarmonyOS, specifically in version 5.0.0. This vulnerability arises from improper control of log information, which could be exploited to affect the confidentiality of service.

Impact

Exploitation of this vulnerability may lead to unauthorized access to sensitive information, potentially compromising service confidentiality.

Remediation

Users can apply the February 2025 security update to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.