Huawei HarmonyOS VPN Service Module Incomplete Verification Vulnerability

Vulnerability

An incomplete verification vulnerability has been identified in the VPN service module of Huawei HarmonyOS. This vulnerability, present in HarmonyOS 5.0.0, could be successfully exploited to impact the availability of the service.

Impact

Exploitation of this vulnerability may disrupt service availability.

Remediation

Users can apply the February 2025 security update to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.