CVE-2023-39391

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 13, 2023
Updated: Aug 17, 2023
CWE ID 264

Summary

CVE-2023-39391 is a newly disclosed vulnerability affecting the USB Service module. This issue allows for the leakage of system file information, potentially compromising the confidentiality of sensitive data. An attacker who successfully exploits this vulnerability can gain unauthorized access to file details, posing a significant risk to organizations and individuals alike. The exact cause of the vulnerability is not yet publicly known, but it is recommended that affected systems be updated as soon as possible to mitigate potential harm. Organizations should also implement strong access controls and monitoring to detect and prevent unauthorized file access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HarmonyOS
  • Huawei EMUI

Affected Vendors

  • Huawei Technologies