Permission Control Vulnerability in Huawei Package Management Module
CVE-2025-66325

6.2MEDIUM

Key Information:

Vendor

Huawei

Vendor
CVE Published:
8 December 2025

What is CVE-2025-66325?

A permission control vulnerability exists within the package management module of Huawei products. If exploited, this flaw may allow an attacker to bypass security controls and gain unauthorized access, jeopardizing the confidentiality of services. Prompt remediation is essential to protect sensitive information.

Affected Version(s)

EMUI 15.0.0

EMUI 14.2.0

EMUI 14.0.0

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-66325 : Permission Control Vulnerability in Huawei Package Management Module