OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- >= 6.0, < 6.0.0-Release
A remote code execution vulnerability has been identified in the OpenHarmony WebView component, specifically in versions through 6.0. This vulnerability allows attackers to execute arbitrary code in pre-installed applications.
Exploitation of this vulnerability could lead to unauthorized execution of code within the context of the affected application.
Users can apply the patch available in the OpenHarmony Chromium CEF repository, specifically in the pull request linked in the references.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.