Vulnerabilities in HUAWEI

1,400 results
Vexday analysis

A Huawei apresenta um perfil de risco baixo na base do Vexday, com apenas 5 CVEs registradas e nenhuma sob exploração ativa (KEV). Não há vulnerabilidades críticas identificadas nem publicações recentes, indicando estabilidade relativa no período analisado.

CVE-2022-46323CRITICALSome smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptionEPSS 0.5%CVE-2022-48512—Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of this vulnerability may cause the image decodinEPSS 0.5%CVE-2022-46319CRITICALFingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation of this vulnerability may cause out-of-bouEPSS 0.5%CVE-2022-48511—Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions. Successful exploitation of this vulnerability maEPSS 0.5%CVE-2021-37112—Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may leaEPSS 0.5%CVE-2021-46887CRITICALLack of length check vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause out-of-bounds read.EPSS 0.5%CVE-2021-37058—There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lEPSS 0.5%CVE-2023-4565MEDIUMBroadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may cause the hotspot featEPSS 0.5%CVE-2021-46852HIGHThe memory management module has the logic bypass vulnerability. Successful exploitation of this vulnerability may affect data confidentialiEPSS 0.5%CVE-2022-48349CRITICALThe control component has a spoofing vulnerability. Successful exploitation of this vulnerability may affect confidentiality and availabilitEPSS 0.5%CVE-2022-48353CRITICALSome smartphones have configuration issues. Successful exploitation of this vulnerability may cause kernel privilege escalation, which resulEPSS 0.5%CVE-2019-5274—USG9500 with versions of V500R001C30;V500R001C60 have a denial of service vulnerability. Due to a flaw in the X.509 implementation in the afEPSS 0.5%CVE-2020-1832—E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00) have a stack buffer overflow vulnerability. The program EPSS 0.5%CVE-2019-5273—USG9500 with versions of V500R001C30;V500R001C60 have a denial of service vulnerability. Due to a flaw in the X.509 implementation in the afEPSS 0.5%CVE-2023-46758—Permission management vulnerability in the multi-screen interaction module. Successful exploitation of this vulnerability may cause service EPSS 0.5%CVE-2022-48357—Some products have the double fetch vulnerability. Successful exploitation of this vulnerability may cause denial of service (DoS) attacks tEPSS 0.5%CVE-2023-39401CRITICALParameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be reaEPSS 0.5%CVE-2023-39400CRITICALParameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be reaEPSS 0.5%CVE-2022-48351HIGHThe secure OS module has configuration defects. Successful exploitation of this vulnerability may affect availability.EPSS 0.5%CVE-2021-36987—There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race conditions. Successful exploiEPSS 0.5%