Vulnerabilidades em Huawei

1.399 resultados
Análise Vexday

Com 1.362 CVEs catalogadas, o portfólio de vulnerabilidades da Huawei apresenta volume expressivo, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, com nenhuma entrada confirmada no CISA KEV. O tipo de falha mais frequente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a viabilizar vazamento de informações ou condições de instabilidade em equipamentos de rede e sistemas embarcados. A CVE de maior pontuação EPSS no momento é CVE-2019-5285, com índice de 0,0166 — valor baixo em termos absolutos, mas que ainda merece atenção em ambientes onde o ativo afetado esteja exposto. A ausência de PoCs públicas conhecidas reduz a superfície de exploração imediata, mas os 57 registros de severidade crítica e as 47 CVEs surgidas nos últimos 90 dias indicam que a gestão contínua de patches permanece necessária.

CVE-2026-49310HIGHPermission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service EPSS 0.3%CVE-2023-39393—Vulnerability of insecure signatures in the ServiceWifiResources module. Successful exploitation of this vulnerability may cause ServiceWifiEPSS 0.2%CVE-2023-39392—Vulnerability of insecure signatures in the OsuLogin module. Successful exploitation of this vulnerability may cause OsuLogin to be maliciouEPSS 0.2%CVE-2024-54115MEDIUMOut-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.2%CVE-2024-54108MEDIUMRead/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.2%CVE-2024-54116MEDIUMOut-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnoEPSS 0.2%CVE-2020-1833—Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability. A logic error occurs wEPSS 0.2%CVE-2024-57954MEDIUMPermission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service cEPSS 0.2%CVE-2024-12602MEDIUMIdentity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may affect service confEPSS 0.2%CVE-2020-1786—HUAWEI Mate 20 Pro smartphones versions earlier than 10.0.0.175(C00E69R3P8) have an improper authentication vulnerability. The software doesEPSS 0.2%CVE-2020-1789—Huawei OSCA-550, OSCA-550A, OSCA-550AX, and OSCA-550X products with version 1.0.1.21(SP3) have an insufficient authentication vulnerability.EPSS 0.2%CVE-2024-57958MEDIUMOut-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perforEPSS 0.2%CVE-2022-48621MEDIUMVulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect EPSS 0.2%CVE-2023-41295—Vulnerability of improper permission management in the displayengine module. Successful exploitation of this vulnerability may cause the scrEPSS 0.2%CVE-2024-54107HIGHRead/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.EPSS 0.2%CVE-2022-48330HIGHA Huawei sound box product has an out-of-bounds write vulnerability. Attackers can exploit this vulnerability to cause buffer overflow. AffeEPSS 0.2%CVE-2020-1842—Huawei HEGE-560 version 1.0.1.20(SP2); OSCA-550 and OSCA-550A version 1.0.0.71(SP1); and OSCA-550AX and OSCA-550X version 1.0.0.71(SP2) haveEPSS 0.2%CVE-2019-5297—Emily-L29C Huawei phones versions earlier than 9.0.0.159 (C185E2R1P12T8) have a Factory Reset Protection (FRP) bypass security vulnerabilityEPSS 0.2%CVE-2019-5283—There is Factory Reset Protection (FRP) bypass security vulnerability in P20 Huawei smart phones versions earlier than Emily-AL00A 9.0.0.167EPSS 0.2%CVE-2019-5306—There is a Factory Reset Protection (FRP) bypass security vulnerability in P20 Huawei smart phones versions before Emily-AL00A 9.0.0.167(C00EPSS 0.2%