CVE-2025-68967
Improper Permission Control in Print Module Risks Data Confidentiality
Publication date: 2026-01-14
Last updated on: 2026-01-14
Assigner: Huawei Technologies
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| huawei | harmonyos | to 6.0.0 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-264 | Permissions, Privileges, and Access Controls |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is due to improper permission control in the print module of Huawei HarmonyOS. It means that the system does not correctly restrict access permissions related to printing functions, which could be exploited by an attacker.
How can this vulnerability impact me? :
Successful exploitation of this vulnerability may affect service confidentiality, potentially leading to unauthorized access or leakage of sensitive information related to printing services.
What immediate steps should I take to mitigate this vulnerability?
Apply the latest Huawei security updates released in January 2026 for HarmonyOS devices, as these updates address multiple vulnerabilities including those affecting service confidentiality and availability. Specifically, ensure your Huawei HarmonyOS devices are updated to the latest patched version to mitigate this vulnerability. [2]