Vulnerabilidades em Huawei

1.400 resultados
Análise Vexday

Com 1.362 CVEs catalogadas, o portfólio de vulnerabilidades da Huawei apresenta volume expressivo, embora a taxa de exploração ativa esteja abaixo da média geral do catálogo, com nenhuma entrada confirmada no CISA KEV. O tipo de falha mais frequente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a viabilizar vazamento de informações ou condições de instabilidade em equipamentos de rede e sistemas embarcados. A CVE de maior pontuação EPSS no momento é CVE-2019-5285, com índice de 0,0166 — valor baixo em termos absolutos, mas que ainda merece atenção em ambientes onde o ativo afetado esteja exposto. A ausência de PoCs públicas conhecidas reduz a superfície de exploração imediata, mas os 57 registros de severidade crítica e as 47 CVEs surgidas nos últimos 90 dias indicam que a gestão contínua de patches permanece necessária.

CVE-2026-58552MEDIUMOut-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confideEPSS 0.1%CVE-2026-58551MEDIUMOut-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confideEPSS 0.1%CVE-2024-42037CRITICALVulnerability of uncaught exceptions in the Graphics module Impact: Successful exploitation of this vulnerability may affect service confideEPSS 0.1%CVE-2026-49308MEDIUMPermission control vulnerability in the clipboard module. Impact: Successful exploitation of this vulnerability may affect service confidentEPSS 0.1%CVE-2026-58558HIGHPermission control vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect service confidentialitEPSS 0.1%CVE-2026-41980MEDIUMPermission control vulnerability in the file preview module. Impact: Successful exploitation of this vulnerability may affect service confidEPSS 0.1%CVE-2026-49301MEDIUMPermission control vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiaEPSS 0.1%CVE-2025-54653HIGHPath traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentialityEPSS 0.1%CVE-2025-54652HIGHPath traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentialityEPSS 0.1%CVE-2024-39671CRITICALAccess control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service cEPSS 0.1%CVE-2022-31758—The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.EPSS 0.1%CVE-2024-54099MEDIUMFile replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integrity and confidentialiEPSS 0.1%CVE-2026-24916MEDIUMIdentity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service EPSS 0.1%CVE-2024-42030MEDIUMAccess permission verification vulnerability in the content sharing pop-up module Impact: Successful exploitation of this vulnerability may EPSS 0.1%CVE-2026-28541MEDIUMPermission control vulnerability in the cellular_data module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2020-9250LOWThere is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software pacEPSS 0.1%CVE-2026-49314HIGHOOB write vulnerability in the rendering and composition module. Impact: Successful exploitation of this vulnerability may affect availabiliEPSS 0.1%CVE-2026-24918MEDIUMAddress read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2026-24914MEDIUMType confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2024-51528MEDIUMVulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect servEPSS 0.1%