Vulnerabilidades em Huawei Technologies Co., Ltd.

380 resultados
Análise Vexday

O portfólio de vulnerabilidades catalogadas para a Huawei Technologies soma 380 CVEs, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada confirmada no CISA KEV —, o que indica, em termos relativos, menor pressão de exploração imediata. Ainda assim, a atenção deve recair sobre CVE-2017-17215, que apresenta EPSS de 0,7861, sinalizando alta probabilidade de exploração e permanecendo como o risco mais relevante no conjunto atual. A existência de três CVEs com prova de conceito pública reforça a necessidade de acompanhamento contínuo, mesmo na ausência de CVEs críticas formalmente classificadas ou de novas vulnerabilidades nos últimos 90 dias.

CVE-2017-17320Huawei Mate 9 Pro smartphones with software of LON-AL00BC00B139D, LON-AL00BC00B229, LON-L29DC721B188 have a memory double free vulnerabilityEPSS 1.0%CVE-2017-15316The GPU driver of Mate 9 Huawei smart phones with software before MHA-AL00B 8.0.0.334(C00) and Mate 9 Pro Huawei smart phones with software EPSS 1.0%CVE-2017-17317Common Open Policy Service Protocol (COPS) module in Huawei USG6300 V100R001C10; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R00EPSS 1.0%CVE-2018-7977There is an information leakage vulnerability on several Huawei products. Due to insufficient communication protection for specific servicesEPSS 1.0%CVE-2017-15309Huawei iReader app before 8.0.2.301 has a path traversal vulnerability due to insufficient validation on file storage paths. An attacker canEPSS 1.0%CVE-2017-2699The Huawei Themes APP in versions earlier than PLK-UL00C17B385, versions earlier than CRR-L09C432B380, versions earlier than LYO-L21C577B128EPSS 1.0%CVE-2017-17301Huawei AR120-S V200R005C32, V200R006C10, V200R007C00, V200R008C20, AR1200 V200R005C20, V200R005C32, V200R006C10, V200R007C00, V200R007C01, VEPSS 1.0%CVE-2017-17165IPv6 function in Huawei Quidway S2700 V200R003C00SPC300, Quidway S5300 V200R003C00SPC300, Quidway S5700 V200R003C00SPC300, S2300 V200R003C00EPSS 1.0%CVE-2017-8147AC6005 V200R006C10SPC200,AC6605 V200R006C10SPC200,AR1200 with software V200R005C10CP0582T, V200R005C10HP0581T, V200R005C20SPC026T,AR200 withEPSS 1.0%CVE-2017-17217Media Gateway Control Protocol (MGCP) in Huawei DP300 V500R002C00; RP200 V500R002C00SPC200; V600R006C00; TE30 V100R001C10; V500R002C00; V600EPSS 1.0%CVE-2017-17216Media Gateway Control Protocol (MGCP) in Huawei DP300 V500R002C00; RP200 V500R002C00SPC200; V600R006C00; TE30 V100R001C10; V500R002C00; V600EPSS 1.0%CVE-2017-8150The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria-L09AC605B162, the versions before VictoEPSS 1.0%CVE-2017-17187Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE40 V500R002C00, V600R006C00, TE50 V5EPSS 0.9%CVE-2017-15349Huawei CloudEngine 12800 V100R003C00, V100R005C00, V100R005C10, V100R006C00,CloudEngine 5800 V100R003C00, V100R005C00, V100R005C10, V100R006EPSS 0.9%CVE-2017-2700AC6005 with software V200R006C10, AC6605 with software V200R006C10 have a DoS Vulnerability. An attacker can send malformed packets to the dEPSS 0.9%CVE-2017-2719FusionSphere OpenStack with software V100R006C00 and V100R006C10RC2 has two command injection vulnerabilities due to the insufficient input EPSS 0.9%CVE-2017-2698The ddr_devfreq driver in versions earlier than GRA-UL00C00B197 has buffer overflow vulnerability. An attacker with the root privilege of thEPSS 0.9%CVE-2016-8783Touchscreen drive in Huawei H60 (Honor 6) Versions earlier than H60-L02_6.12.16 and P9 Plus Versions earlier than VIE-AL10BC00B356 has a staEPSS 0.9%CVE-2017-17155IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH508, V500REPSS 0.9%CVE-2017-17154IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH508, V500REPSS 0.9%