Vulnerabilidades en Huawei Technologies Co., Ltd.

380 resultados
Análisis Vexday

O portfólio de vulnerabilidades catalogadas para a Huawei Technologies soma 380 CVEs, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada confirmada no CISA KEV —, o que indica, em termos relativos, menor pressão de exploração imediata. Ainda assim, a atenção deve recair sobre CVE-2017-17215, que apresenta EPSS de 0,7861, sinalizando alta probabilidade de exploração e permanecendo como o risco mais relevante no conjunto atual. A existência de três CVEs com prova de conceito pública reforça a necessidade de acompanhamento contínuo, mesmo na ausência de CVEs críticas formalmente classificadas ou de novas vulnerabilidades nos últimos 90 dias.

CVE-2017-8201MAX PRESENCE V100R001C00, TP3106 V100R002C00, TP3206 V100R002C00 have an a memory leak vulnerability in H323 protocol. An attacker logs in tEPSS 1.1%CVE-2017-2695TIT-AL00C583B211 has a directory traversal vulnerability which allows an attacker to obtain the files in email application.EPSS 1.1%CVE-2017-17174Some Huawei products RSE6500 V500R002C00; SoftCo V200R003C20SPCb00; VP9660 V600R006C10; eSpace U1981 V100R001C20; V200R003C20; V200R003C30; EPSS 1.1%CVE-2017-17311Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoEPSS 1.1%CVE-2017-17312Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoEPSS 1.1%CVE-2017-15313Huawei SmartCare V200R003C10 has a CSV injection vulnerability. An remote authenticated attacker could inject malicious CSV expression to thEPSS 1.1%CVE-2017-8160The Madapt Driver of some Huawei smart phones with software Earlier than Vicky-AL00AC00B172 versions,Vicky-AL00CC768B122,Vicky-TL00AC01B167,EPSS 1.1%CVE-2017-8142The Trusted Execution Environment (TEE) module driver of Mate 9 and Mate 9 Pro smart phones with software versions earlier than MHA-AL00BC00EPSS 1.1%CVE-2018-7993HUAWEI Mate 10 smartphones with versions earlier than ALP-AL00 8.1.0.311 have a use after free vulnerability on mediaserver component. An atEPSS 1.1%CVE-2017-17160Huawei AR120-S V200R006C10, V200R007C00, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C02, AR1200-S V200R006C10, V200R007C00, V200REPSS 1.1%CVE-2017-2693ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185B200 and earlier veEPSS 1.1%CVE-2017-8198FusionSphere V100R006C00SPC102(NFV) has an SQL injection vulnerability. An authenticated, remote attacker could craft interface messages carEPSS 1.1%CVE-2017-8129The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper proceEPSS 1.0%CVE-2017-8124The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of paraEPSS 1.0%CVE-2017-8120The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper proceEPSS 1.0%CVE-2017-8123The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of paraEPSS 1.0%CVE-2017-8128The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper proceEPSS 1.0%CVE-2017-8126The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of paraEPSS 1.0%CVE-2017-8119The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper proceEPSS 1.0%CVE-2017-17305Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a BlEPSS 1.0%