Vulnerabilidades em HUAWEI

1.400 resultados
Análise Vexday

A Huawei apresenta um perfil de risco baixo na base do Vexday, com apenas 5 CVEs registradas e nenhuma sob exploração ativa (KEV). Não há vulnerabilidades críticas identificadas nem publicações recentes, indicando estabilidade relativa no período analisado.

CVE-2024-54120MEDIUMRace condition vulnerability in the distributed notification module Impact: Successful exploitation of this vulnerability may cause featuresEPSS 0.1%CVE-2021-22457—A component of the HarmonyOS has a Improper Input Validation vulnerability. Local attackers may exploit this vulnerability to cause out-of-bEPSS 0.1%CVE-2021-22455—A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulnerability to cause theEPSS 0.1%CVE-2021-22424—A component of the HarmonyOS has a Kernel Memory Leakage Vulnerability. Local attackers may exploit this vulnerability to cause Kernel DeniaEPSS 0.1%CVE-2021-22459—A component of the HarmonyOS has a NULL Pointer Dereference vulnerability. Local attackers may exploit this vulnerability to cause System fuEPSS 0.1%CVE-2025-54650MEDIUMImproper array index verification vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect EPSS 0.1%CVE-2022-41577HIGHThe kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this EPSS 0.1%CVE-2024-56439HIGHAccess control vulnerability in the identity authentication module Impact: Successful exploitation of this vulnerability may affect service EPSS 0.1%CVE-2024-42036LOWAccess permission verification vulnerability in the Notepad module Impact: Successful exploitation of this vulnerability may affect service EPSS 0.1%CVE-2024-47292MEDIUMPath traversal vulnerability in the Bluetooth module Impact: Successful exploitation of this vulnerability may affect service confidentialitEPSS 0.1%CVE-2025-54622HIGHBinding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect seEPSS 0.1%CVE-2022-31752—Missing authorization vulnerability in the system components. Successful exploitation of this vulnerability will affect confidentiality.EPSS 0.1%CVE-2026-41960MEDIUMPermission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2025-54635MEDIUMVulnerability of returning released pointers in the distributed notification service. Impact: Successful exploitation of this vulnerability EPSS 0.1%CVE-2021-40006—Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may affect confidentialitEPSS 0.1%CVE-2023-52383MEDIUMDouble-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.1%CVE-2023-52384MEDIUMDouble-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.1%CVE-2022-45874MEDIUMHuawei Aslan Children's Watch has an improper authorization vulnerability. Successful exploit could allow the attacker to access certain filEPSS 0.1%CVE-2025-54648MEDIUMOut-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack. Impact: Successful exploitation of this vulnerability maEPSS 0.1%CVE-2025-53168MEDIUMVulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful exploitation of this EPSS 0.1%