CVE-2025-58302
HIGHDescription
Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| huawei | emui |
| huawei | emui |
| huawei | emui |
| huawei | emui |
| huawei | emui |
| huawei | harmonyos |
| huawei | harmonyos |
| huawei | harmonyos |
| huawei | harmonyos |
| huawei | harmonyos |
| huawei | harmonyos |
| huawei | harmonyos |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-58302? +
How severe is CVE-2025-58302? +
What products are affected by CVE-2025-58302? +
How do I check if I'm vulnerable to CVE-2025-58302? +
Related Vulnerabilities
Information disclosure may occur due to improper permission and access controls to Video Analytics engine.
Permission bypass vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect availability.
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data 3.5, 4.0, 4.5, 4.6, 4.7, …
A vulnerability was identified in NousResearch hermes-agent up to 2026.4.16. This impacts the function execute_code of the file tools/code_execution_tool.py of …