Permission Control Flaw in Huawei Settings Module
CVE-2026-49309

4.8MEDIUM

Key Information:

Vendor

Huawei

Vendor
CVE Published:
9 September 2026

What is CVE-2026-49309?

The vulnerability identified in Huawei's Settings module pertains to insufficient permission control mechanisms. If exploited, it could potentially allow unauthorized access, thereby jeopardizing the confidentiality of services provided by the affected module. Users and organizations utilizing Huawei devices should ensure they are updated to the latest versions to mitigate the risk associated with this security flaw.

Affected Version(s)

EMUI 16.0.0

EMUI 15.0.0

EMUI 14.2.0

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.