CVE-2022-45874

MEDIUM

Huawei Aslan Children's Watch Firmware >=11.1.0.118(c00m06) <11.1.0.10118(c00m06) - Improper Authorization

Title source: llm
STIX 2.1

Description

Huawei Aslan Children's Watch has an improper authorization vulnerability. Successful exploit could allow the attacker to access certain file.

Scores

CVSS v3 5.5
EPSS 0.0002
EPSS Percentile 7.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-285
Status published
Products (1)
huawei/aslan-al10_firmware 11.1.0.118\(c00m06\) - 11.1.0.10118\(c00m06\)
Published Dec 28, 2022
Tracked Since Feb 18, 2026