Vulnerabilities in huawei

1,400 results
Vexday analysis

Huawei apresenta um volume mínimo de vulnerabilidades rastreadas (1 CVE), sem registros de exploração ativa nem críticas de severidade elevada. A única fragilidade catalogada refere-se a validação inadequada de entrada (CWE-20), com nenhuma publicação recente nos últimos 90 dias, indicando um panorama de risco baixo e estável no curto prazo.

CVE-2021-46840CRITICALThe HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification.Successful exploitation of this vulnerabilitEPSS 0.5%CVE-2022-48359—The recovery mode for updates has a vulnerability that causes arbitrary disk modification. Successful exploitation of this vulnerability mayEPSS 0.5%CVE-2022-41586HIGHThe communication framework module has a vulnerability of not truncating data properly.Successful exploitation of this vulnerability may affEPSS 0.5%CVE-2022-38985HIGHThe facial recognition module has a vulnerability in input validation.Successful exploitation of this vulnerability may affect data confidenEPSS 0.5%CVE-2022-41581CRITICALThe HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause maliciousEPSS 0.5%CVE-2021-46839CRITICALThe HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful exploitation of this vulnerability may cause maliciEPSS 0.5%CVE-2022-38984HIGHThe HIPP module has a vulnerability of not verifying the data transferred in the kernel space.Successful exploitation of this vulnerability EPSS 0.5%CVE-2022-38998HIGHThe HISP module has a vulnerability of not verifying the data transferred in the kernel space.Successful exploitation of this vulnerability EPSS 0.5%CVE-2022-38981HIGHThe HwAirlink module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause information leakage.EPSS 0.5%CVE-2022-48606—Stability-related vulnerability in the binder background management and control module. Successful exploitation of this vulnerability may afEPSS 0.5%CVE-2023-37239—Format string vulnerability in the distributed file system. Attackers who bypass the selinux permission can exploit this vulnerability to cEPSS 0.5%CVE-2023-52378CRITICALVulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause featureEPSS 0.5%CVE-2021-46895—Vulnerability of defects introduced in the design process in the Multi-Device Task Center. Successful exploitation of this vulnerability wilEPSS 0.5%CVE-2021-37085—There is a Encoding timing vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to denial of service.EPSS 0.5%CVE-2023-52370CRITICALStack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file acEPSS 0.5%CVE-2023-52103CRITICALBuffer overflow vulnerability in the FLP module. Successful exploitation of this vulnerability may cause out-of-bounds read.EPSS 0.5%CVE-2022-48513—Vulnerability of identity verification being bypassed in the Gallery module. Successful exploitation of this vulnerability may cause out-of-EPSS 0.5%CVE-2023-39409—DoS vulnerability in the PMS module. Successful exploitation of this vulnerability may cause the system to restart.EPSS 0.5%CVE-2023-41300—Vulnerability of parameters not being strictly verified in the PMS module. Successful exploitation of this vulnerability may cause the systeEPSS 0.5%CVE-2023-0116HIGHThe reminder module lacks an authentication mechanism for broadcasts received. Successful exploitation of this vulnerability may affect avaiEPSS 0.5%