Vulnerabilidades em Huawei

1.399 resultados
Análise Vexday

Com 1.362 CVEs catalogadas, o portfólio de vulnerabilidades da Huawei apresenta volume expressivo, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, com nenhuma entrada confirmada no CISA KEV. O tipo de falha mais frequente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a viabilizar vazamento de informações ou condições de instabilidade em equipamentos de rede e sistemas embarcados. A CVE de maior pontuação EPSS no momento é CVE-2019-5285, com índice de 0,0166 — valor baixo em termos absolutos, mas que ainda merece atenção em ambientes onde o ativo afetado esteja exposto. A ausência de PoCs públicas conhecidas reduz a superfície de exploração imediata, mas os 57 registros de severidade crítica e as 47 CVEs surgidas nos últimos 90 dias indicam que a gestão contínua de patches permanece necessária.

CVE-2023-44099Vulnerability of data verification errors in the kernel module. Successful exploitation of this vulnerability may cause WLAN interruption.EPSS 0.5%CVE-2023-46761Out-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause process exceptions.EPSS 0.5%CVE-2023-46768Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perform abnormally.EPSS 0.5%CVE-2023-46766HIGHOut-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause process exceptions.EPSS 0.5%CVE-2023-46760HIGHOut-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause process exceptions.EPSS 0.5%CVE-2023-46772HIGHVulnerability of parameters being out of the value range in the QMI service module. Successful exploitation of this vulnerability may cause EPSS 0.5%CVE-2023-46770HIGHOut-of-bounds vulnerability in the sensor module. Successful exploitation of this vulnerability may cause mistouch prevention errors on userEPSS 0.5%CVE-2021-40055There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerabilEPSS 0.5%CVE-2023-46769Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect availability.EPSS 0.5%CVE-2023-46762HIGHOut-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause process exceptions.EPSS 0.5%CVE-2023-46767HIGHOut-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause process exceptions.EPSS 0.5%CVE-2023-46765HIGHVulnerability of uncaught exceptions in the NFC module. Successful exploitation of this vulnerability can affect NFC availability.EPSS 0.5%CVE-2023-46774HIGHVulnerability of uncaught exceptions in the NFC module. Successful exploitation of this vulnerability can affect NFC availability.EPSS 0.5%CVE-2021-40023Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.EPSS 0.5%CVE-2021-37056There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts EPSS 0.5%CVE-2021-37132PackageManagerService has a Permissions, Privileges, and Access Controls vulnerability .Successful exploitation of this vulnerability may caEPSS 0.5%CVE-2023-41308Screenshot vulnerability in the input module. Successful exploitation of this vulnerability may affect confidentiality.EPSS 0.5%CVE-2021-46851CRITICALThe DRM module has a vulnerability in verifying the secure memory attributes. Successful exploitation of this vulnerability may cause abnormEPSS 0.5%CVE-2022-34159HIGHHuawei printers have an input verification vulnerability. Successful exploitation of this vulnerability may cause device service exceptions.EPSS 0.5%CVE-2022-44550HIGHThe graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vulnerability may affectEPSS 0.5%