CVE-2025-54622
HIGHHuawei Harmonyos - Authentication Bypass
Title source: ruleDescription
Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Scores
CVSS v3
8.3
EPSS
0.0001
EPSS Percentile
2.6%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Classification
CWE
CWE-305
Status
published
Affected Products (2)
huawei/harmonyos
huawei/harmonyos
Timeline
Published
Aug 06, 2025
Tracked Since
Feb 18, 2026