OpenHarmony
cpe:2.3:a:openharmony:openharmony:*:*:*:*:*:*:*
- <= 6.0
A vulnerability in OpenHarmony versions 6.0 and prior allows local attackers to execute arbitrary code. This issue is classified as a use-after-free vulnerability in the filemanagement_storage_service component, specifically in the OpenHarmony-v5.1.0-Release branch.
Exploitation of this vulnerability could lead to unauthorized execution of code, potentially allowing an attacker to execute malicious payloads or commands on the affected system.
Users can apply the patch available in the OpenHarmony filemanagement_storage_service repository, specifically in the pull request linked in the references.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.