Vulnerabilities in huawei
1,400 resultsVexday analysis
Huawei apresenta um volume mínimo de vulnerabilidades rastreadas (1 CVE), sem registros de exploração ativa nem críticas de severidade elevada. A única fragilidade catalogada refere-se a validação inadequada de entrada (CWE-20), com nenhuma publicação recente nos últimos 90 dias, indicando um panorama de risco baixo e estável no curto prazo.
CVE-2021-22462—A component of the HarmonyOS has a NULL Pointer Dereference vulnerability. Local attackers may exploit this vulnerability to cause kernel crEPSS 0.1%CVE-2021-22459—A component of the HarmonyOS has a NULL Pointer Dereference vulnerability. Local attackers may exploit this vulnerability to cause System fuEPSS 0.1%CVE-2022-31759—AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vulnerability may affect system availabilitEPSS 0.1%CVE-2021-22455—A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause theEPSS 0.1%CVE-2021-22417—A component of the HarmonyOS has a Data Processing Errors vulnerability. Local attackers may exploit this vulnerability to cause Kernel MemoEPSS 0.1%CVE-2021-22466—A component of the HarmonyOS has a Use After Free vulnerability. Local attackers may exploit this vulnerability to cause kernel crash.EPSS 0.1%CVE-2024-54120MEDIUMRace condition vulnerability in the distributed notification module
Impact: Successful exploitation of this vulnerability may cause featuresEPSS 0.1%CVE-2022-41577HIGHThe kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this EPSS 0.1%CVE-2024-56439HIGHAccess control vulnerability in the identity authentication module
Impact: Successful exploitation of this vulnerability may affect service EPSS 0.1%CVE-2024-42036LOWAccess permission verification vulnerability in the Notepad module
Impact: Successful exploitation of this vulnerability may affect service EPSS 0.1%CVE-2025-54622HIGHBinding authentication bypass vulnerability in the devicemanager module.
Impact: Successful exploitation of this vulnerability may affect seEPSS 0.1%CVE-2024-47292MEDIUMPath traversal vulnerability in the Bluetooth module
Impact: Successful exploitation of this vulnerability may affect service confidentialitEPSS 0.1%CVE-2022-31752—Missing authorization vulnerability in the system components. Successful exploitation of this vulnerability will affect confidentiality.EPSS 0.1%CVE-2026-41960MEDIUMPermission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2025-54635MEDIUMVulnerability of returning released pointers in the distributed notification service.
Impact: Successful exploitation of this vulnerability EPSS 0.1%CVE-2023-52383MEDIUMDouble-free vulnerability in the RSMC module
Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.1%CVE-2023-52384MEDIUMDouble-free vulnerability in the RSMC module
Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.1%CVE-2021-40006—Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may affect confidentialitEPSS 0.1%CVE-2022-45874MEDIUMHuawei Aslan Children's Watch has an improper authorization vulnerability. Successful exploit could allow the attacker to access certain filEPSS 0.1%CVE-2025-54648MEDIUMOut-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack.
Impact: Successful exploitation of this vulnerability maEPSS 0.1%