CVE-2021-37040
CRITICALHuawei Harmonyos < 2.0 - Privilege Escalation
Title source: ruleDescription
There is a Parameter injection vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause privilege escalation of files after CIFS share mounting.
Scores
CVSS v3
9.8
EPSS
0.0025
EPSS Percentile
48.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-88
Status
published
Affected Products (3)
huawei/harmonyos
< 2.0
huawei/emui
huawei/magic_ui
Timeline
Published
Dec 08, 2021
Tracked Since
Feb 18, 2026