Permission Verification Bypass in Huawei Media Library Module
CVE-2025-68970

6.1MEDIUM

Key Information:

Vendor

Huawei

Vendor
CVE Published:
14 January 2026

What is CVE-2025-68970?

A vulnerability exists in Huawei's media library module that allows attackers to bypass permission verifications. Successful exploitation could lead to unauthorized access, potentially compromising service confidentiality within the system.

Affected Version(s)

EMUI 15.0.0

EMUI 14.2.0

EMUI 14.0.0

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.