Cyber Resilience

CVE-2023-39385

Huawei Harmonyos 2.0.0 … 3.0.0

Published
13 August 2023
Modified
21 November 2024
Patch / advisory
CVSS Score v3.1 9.1
Click a component to see what it means
Raw vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score 0.0034 26th percentile
Risk Priority 66 floored blend · peak EPSS

Summary

CVE-2023-39385 is a critical-severity an unspecified weakness vulnerability in Huawei Harmonyos. Its CVSS base score is 9.1 (Critical).

Operationally, ranked at the 26th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

OWASP Top 10 for Web (2025)

EU & UK References

Vulnerability Data

Vulnerability of configuration defects in the media module of certain products.. Successful exploitation of this vulnerability may cause unauthorized access.

CWE(s)

Related Threats

CVEs Like This One

CVE-2024-32991Same product: Huawei Emui
CVE-2023-52719Same product: Huawei Emui
CVE-2024-47291Same product: Huawei Emui
CVE-2024-47294Same product: Huawei Emui
CVE-2024-42031Same product: Huawei Emui
CVE-2023-39392Same product: Huawei Emui
CVE-2023-46766Same product: Huawei Emui
CVE-2023-44117Same product: Huawei Emui
CVE-2025-31175Same product: Huawei Emui
CVE-2024-57961Same product: Huawei Emui

Affected Assets

huawei
emui
12.0.0, 13.0.0
huawei
harmonyos
2.0.0, 2.1.0, 3.0.0

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References