Vulnerabilidades em Huawei

1.399 resultados
Análise Vexday

Com 1.362 CVEs catalogadas, o portfólio de vulnerabilidades da Huawei apresenta volume expressivo, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, com nenhuma entrada confirmada no CISA KEV. O tipo de falha mais frequente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a viabilizar vazamento de informações ou condições de instabilidade em equipamentos de rede e sistemas embarcados. A CVE de maior pontuação EPSS no momento é CVE-2019-5285, com índice de 0,0166 — valor baixo em termos absolutos, mas que ainda merece atenção em ambientes onde o ativo afetado esteja exposto. A ausência de PoCs públicas conhecidas reduz a superfície de exploração imediata, mas os 57 registros de severidade crítica e as 47 CVEs surgidas nos últimos 90 dias indicam que a gestão contínua de patches permanece necessária.

CVE-2021-37057There is a Improper Validation of Array Index vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to rEPSS 0.7%CVE-2021-37077There is a NULL Pointer Dereference vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to kernel crasEPSS 0.7%CVE-2021-36997There is a Low memory error in Huawei Smartphone due to the unlimited size of images to be parsed.Successful exploitation of this vulnerabilEPSS 0.7%CVE-2021-37013There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the availabEPSS 0.7%CVE-2021-37029There is an Identity verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availaEPSS 0.7%CVE-2021-37014There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to device cEPSS 0.7%CVE-2022-39009CRITICALThe WLAN module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause third-party apps to EPSS 0.7%CVE-2022-39007CRITICALThe location module has a vulnerability of bypassing permission verification.Successful exploitation of this vulnerability may cause privileEPSS 0.7%CVE-2022-29795The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernEPSS 0.7%CVE-2022-29791The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability wEPSS 0.7%CVE-2022-29790The graphics acceleration service has a vulnerability in multi-thread access to the database.Successful exploitation of this vulnerability mEPSS 0.7%CVE-2022-22261The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability wEPSS 0.7%CVE-2022-22260The kernel module has a UAF vulnerability.Successful exploitation of this vulnerability will affect data integrity and availability.EPSS 0.7%CVE-2022-29796The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability wEPSS 0.7%CVE-2022-29789The HiAIserver has a vulnerability in verifying the validity of the properties used in the model.Successful exploitation of this vulnerabiliEPSS 0.7%CVE-2019-5244Mate 9 Pro Huawei smartphones earlier than LON-L29C 8.0.0.361(C636) versions have an information leak vulnerability due to the lack of inputEPSS 0.7%CVE-2021-37006There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause EPSS 0.7%CVE-2019-5239Huawei PCManager with the versions before 9.0.1.66 (Oversea) and versions before 9.0.1.70 (China) have an information leak vulnerability. SuEPSS 0.7%CVE-2021-37070There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to process crash.EPSS 0.7%CVE-2021-39983HIGHThe HwNearbyMain module has a Data Processing Errors vulnerability.Successful exploitation of this vulnerability may cause a process to restEPSS 0.7%