LiveActive security incident?Get immediate response
CVE Record

CVE-2021-46812: The Device Manager has a vulnerability in multi-device interaction.

The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may affect data integrity.

UnknownCVSS not scoredNot KEV-listedUpdated
Glexia's TakeAutomated analysisunknown

Security readout for executives and security teams

Plain-English summary

CVE-2021-46812 is a Huawei Device Manager flaw involving multi-device interaction. The public description says successful exploitation may affect data integrity. The provided sources do not give severity, CVSS, attack prerequisites, exploit status, or a named fixed build, so urgency depends on whether affected Huawei device versions remain in use.

Executive priority

Treat as a targeted hygiene item, not an emergency, unless affected Huawei devices are material to business workflows. The impact is data integrity, but public evidence lacks severity and exploitation detail.

Technical view

The CVE record identifies a vulnerability in Device Manager multi-device interaction affecting Huawei HarmonyOS 2.0 and EMUI 12.0.0. The documented impact is data integrity. No CWE, CVSS vector, vulnerable component internals, privilege requirement, network scope, or proof of exploitation is provided in the source bundle.

Likely exposure

Exposure appears limited to Huawei devices running HarmonyOS 2.0 or EMUI 12.0.0. The bundle does not identify specific models, enabled features, required proximity, authentication state, or whether all builds in those version lines are affected.

Exploitation context

No provided source states active exploitation, public exploit availability, or CISA KEV listing. The CVE says successful exploitation may affect data integrity, but the available evidence does not describe exploitability conditions or attacker positioning.

Researcher notes

The public record is sparse. Focus validation on asset matching and vendor bulletin correlation. Avoid assuming affected models, fixed builds, remote reachability, or exploit maturity without additional Huawei documentation.

Mitigation direction

  • Check Huawei June 2022 bulletins for applicable vendor update guidance.
  • Inventory Huawei devices running HarmonyOS 2.0 or EMUI 12.0.0.
  • Apply Huawei-supported security updates where available for affected devices.
  • Escalate unsupported affected devices for replacement or compensating risk review.

Validation and detection

  • Confirm device OS version and build through trusted asset inventory.
  • Map Huawei devices against HarmonyOS 2.0 and EMUI 12.0.0 exposure.
  • Review Huawei bulletin applicability for each model and region.
  • Record update status or exception rationale for each affected device.
Prepared
Confidence
medium
Sources
4

Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.

Potential ATT&CK relevance

Conservative CVE-to-ATT&CK context

These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.

ATT&CK lookup starting points

Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.

cve · low confidence lookup

CVE-2021-46812 mapping review

Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.

Open ATT&CK lookup
Vulnerability profileCVE Program record
Severity
Unknown
CVSS
Not scored
Known Exploited
No
Published
Official CVE source material

CNA and ADP enrichment extracted from CVE v5

These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.

0CVSS vectors
0Timeline events
0ADP providers
3Source links

CVSS and timeline data

No CVSS vectors or timeline events were available in the normalized CVE source material.

Affected products

Products and packages named in the record

VendorProductVersion / packageStatus
HuaweiHarmonyOS2.0Listed
HuaweiEMUI12.0.0Listed
Weakness

CWE details

No CWE listed

CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.