CVE-2026-28553

Published: Apr 13, 2026 Last Modified: Apr 14, 2026
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 6,9
Attack Vector: local
Attack Complexity: high
Privileges Required: none
User Interaction: required
Scope: changed
Confidentiality: high
Integrity: low
Availability: low

Description

AI Translation Available

Vulnerability of improper permission control in the theme setting module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0001
Percentile
0,0th
Updated

EPSS Score Trend (Last 4 Days)

Operating System

Harmonyos by Huawei

cpe:2.3:o:huawei:harmonyos:4.3.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Harmonyos by Huawei

cpe:2.3:o:huawei:harmonyos:4.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Emui by Huawei

cpe:2.3:o:huawei:emui:14.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Emui by Huawei

cpe:2.3:o:huawei:emui:14.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Harmonyos by Huawei

cpe:2.3:o:huawei:harmonyos:4.3.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Harmonyos by Huawei

cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Emui by Huawei

cpe:2.3:o:huawei:emui:15.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://consumer.huawei.com/en/support/bulletin/2026/4/