Vulnerabilidades em Huawei

1.399 resultados
Análise Vexday

Com 1.362 CVEs catalogadas, o portfólio de vulnerabilidades da Huawei apresenta volume expressivo, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, com nenhuma entrada confirmada no CISA KEV. O tipo de falha mais frequente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a viabilizar vazamento de informações ou condições de instabilidade em equipamentos de rede e sistemas embarcados. A CVE de maior pontuação EPSS no momento é CVE-2019-5285, com índice de 0,0166 — valor baixo em termos absolutos, mas que ainda merece atenção em ambientes onde o ativo afetado esteja exposto. A ausência de PoCs públicas conhecidas reduz a superfície de exploração imediata, mas os 57 registros de severidade crítica e as 47 CVEs surgidas nos últimos 90 dias indicam que a gestão contínua de patches permanece necessária.

CVE-2021-37051There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause out-of-bounds memoEPSS 0.8%CVE-2021-22431There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerability may cause out-oEPSS 0.8%CVE-2021-40001The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTime application to beEPSS 0.8%CVE-2021-46740The device authentication service module has a defect vulnerability introduced in the design process.Successful exploitation of this vulneraEPSS 0.8%CVE-2021-37020There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bEPSS 0.8%CVE-2021-39990CRITICALThe screen lock module has a Stack-based Buffer Overflow vulnerability.Successful exploitation of this vulnerability may affect user experieEPSS 0.8%CVE-2020-9257HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versEPSS 0.8%CVE-2022-29794The frame scheduling module has a Use After Free (UAF) vulnerability.Successful exploitation of this vulnerability will affect data integritEPSS 0.8%CVE-2021-46786The audio module has a vulnerability in verifying the parameters passed by the application space.Successful exploitation of this vulnerabiliEPSS 0.8%CVE-2021-40051There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentialitEPSS 0.8%CVE-2021-40058There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availabEPSS 0.7%CVE-2021-40057There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability maEPSS 0.7%CVE-2021-40060There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availabEPSS 0.7%CVE-2021-36989There is a Kernel crash vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.EPSS 0.7%CVE-2020-1829Huawei NIP6800 versions V500R001C30 and V500R001C60SPC500; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, EPSS 0.7%CVE-2020-1828Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; and Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500REPSS 0.7%CVE-2020-1870There is a denial of service vulnerability in some Huawei products. Due to improper memory management, memory leakage may occur in some specEPSS 0.7%CVE-2020-1827Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; and Secospace USG6600 and USG9500 versions V500R001C30SPC200,EPSS 0.7%CVE-2021-37116PCManager has a Weaknesses Introduced During Design vulnerability .Successful exploitation of this vulnerability may cause that the PIN of tEPSS 0.7%CVE-2021-37065There is a Integer Overflow or Wraparound vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to ConfiEPSS 0.7%