Vulnerabilities in huawei

1,400 results
Vexday analysis

Huawei apresenta um volume mínimo de vulnerabilidades rastreadas (1 CVE), sem registros de exploração ativa nem críticas de severidade elevada. A única fragilidade catalogada refere-se a validação inadequada de entrada (CWE-20), com nenhuma publicação recente nos últimos 90 dias, indicando um panorama de risco baixo e estável no curto prazo.

CVE-2023-39409—DoS vulnerability in the PMS module. Successful exploitation of this vulnerability may cause the system to restart.EPSS 0.5%CVE-2023-37242—Vulnerability of commands from the modem being intercepted in the atcmdserver module. Attackers may exploit this vulnerability to rewrite thEPSS 0.4%CVE-2021-46891—Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affeEPSS 0.4%CVE-2022-44551CRITICALThe iaware module has a vulnerability in thread security. Successful exploitation of this vulnerability will affect confidentiality, integriEPSS 0.4%CVE-2021-46894—Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel privilege escalatioEPSS 0.4%CVE-2021-46890—Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affeEPSS 0.4%CVE-2022-46327CRITICALSome smartphones have configuration issues. Successful exploitation of this vulnerability may cause privilege escalation, which results in sEPSS 0.4%CVE-2026-49310HIGHPermission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service EPSS 0.4%CVE-2021-37082—There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to motionhub crash.EPSS 0.4%CVE-2023-39386—Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause newEPSS 0.4%CVE-2023-39404—Vulnerability of input parameter verification in certain APIs in the window management module. Successful exploitation of this vulnerabilityEPSS 0.4%CVE-2023-39381— Input verification vulnerability in the storage module. Successful exploitation of this vulnerability may cause the device to restart.EPSS 0.4%CVE-2023-39382— Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to resEPSS 0.4%CVE-2023-34164—Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerabilitEPSS 0.4%CVE-2023-39408—DoS vulnerability in the PMS module. Successful exploitation of this vulnerability may cause the system to restart.EPSS 0.4%CVE-2022-48517—Unauthorized service access vulnerability in the DSoftBus module. Successful exploitation of this vulnerability will affect availability.EPSS 0.4%CVE-2022-46317HIGHThe power consumption module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availaEPSS 0.4%CVE-2023-39388—Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause homEPSS 0.4%CVE-2023-3455—Key management vulnerability on system. Successful exploitation of this vulnerability may affect service availability and integrity.EPSS 0.4%CVE-2023-37241—Input verification vulnerability in the WMS API. Successful exploitation of this vulnerability may cause the device to restart.EPSS 0.4%