Back to overview

CVE-2026-41974

LOW
3.6
CVSS 3.1
Description
Permission control vulnerability in service notifications. Impact: Successful exploitation of this vulnerability may affect availability.

Metadata

CVE ID
CVE-2026-41974
State
PUBLISHED
Assigner
huawei
Reserved
2026-04-23 01:42 UTC
Published
2026-06-09 06:57 UTC
Last updated
2026-06-09 12:58 UTC
Primary CWE
CWE-264
CWE-264 Permissions, Privileges, and Access Controls
Vendor / Product
Huawei / HarmonyOS
Sources
cve.org  ·  NVD

Severity & Metrics

3.6 LOW CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L
SSVC — CISA Coordinator
Exploitation
none
Automatable
no
Tech. Impact
partial
Affected products (2)
VendorProductPlatformVersions
Huawei EMUI 15.0.0, 14.2.0, 14.0.0
Huawei HarmonyOS 4.3.1, 4.3.0, 4.2.0, 4.0.0
Weakness (CWE)
CWESourceDescription
CWE-264 cna CWE-264 Permissions, Privileges, and Access Controls
CVSS scores (1)
ScoreSeverityVersionSourceVector
3.6 LOW 3.1 cna CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:L
Back to overview