Lucene search

K

HUAWEI Security Vulnerabilities

cve
cve

CVE-2023-52711

Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory thus potentially.....

7.8CVSS

7.4AI Score

0.0004EPSS

2024-05-28 07:15 AM
37
cve
cve

CVE-2022-48681

Some Huawei smart speakers have a memory overflow vulnerability. Successful exploitation of this vulnerability may cause certain functions to...

7.2CVSS

6.9AI Score

0.0004EPSS

2024-05-28 04:15 AM
39
cve
cve

CVE-2023-52548

Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26) Arbitrary Memory Corruption in SMI Handler of ThisiServicesSmm SMM module. This can be leveraged by a malicious OS attacker to corrupt arbitrary SMRAM memory and, in turn, lead to code execution in...

7.8CVSS

7.3AI Score

0.0004EPSS

2024-05-28 07:15 AM
38
cve
cve

CVE-2024-4046

Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect...

6.4CVSS

6.9AI Score

0.0004EPSS

2024-05-14 03:42 PM
13
cve
cve

CVE-2023-52537

Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
26
cve
cve

CVE-2024-30418

Vulnerability of insufficient permission verification in the app management module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-07 09:15 AM
26
cve
cve

CVE-2024-27897

Input verification vulnerability in the call module. Impact: Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-04-08 10:15 AM
31
cve
cve

CVE-2023-52552

Input verification vulnerability in the power module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
29
cve
cve

CVE-2023-52544

Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
27
cve
cve

CVE-2023-52542

Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
24
cve
cve

CVE-2023-52554

Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
24
cve
cve

CVE-2023-52549

Vulnerability of data verification errors in the kernel module. Impact: Successful exploitation of this vulnerability may affect service...

6.7AI Score

0.0004EPSS

2024-04-08 09:15 AM
31
cve
cve

CVE-2023-52543

Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
28
cve
cve

CVE-2023-52538

Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
26
cve
cve

CVE-2023-52714

Vulnerability of defects introduced in the design process in the hwnff module. Impact: Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-04-07 09:15 AM
28
cve
cve

CVE-2023-52716

Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-07 09:15 AM
27
cve
cve

CVE-2023-52713

Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability and...

6.8AI Score

0.0004EPSS

2024-04-07 09:15 AM
30
cve
cve

CVE-2024-30416

Use After Free (UAF) vulnerability in the underlying driver module. Impact: Successful exploitation of this vulnerability will affect...

6.9AI Score

0.0004EPSS

2024-04-07 09:15 AM
26
cve
cve

CVE-2023-52385

Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 10:15 AM
25
cve
cve

CVE-2023-52550

Vulnerability of data verification errors in the kernel module. Impact: Successful exploitation of this vulnerability may affect service...

6.7AI Score

0.0004EPSS

2024-04-08 09:15 AM
27
cve
cve

CVE-2023-52539

Permission verification vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
28
cve
cve

CVE-2023-52545

Vulnerability of undefined permissions in the Calendar app. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
27
cve
cve

CVE-2023-52388

Permission control vulnerability in the clock module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-08 09:15 AM
25
cve
cve

CVE-2024-30414

Command injection vulnerability in the AccountManager module. Impact: Successful exploitation of this vulnerability may affect service...

7.2AI Score

0.0004EPSS

2024-04-07 08:15 AM
28
cve
cve

CVE-2024-30415

Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect...

6.8AI Score

0.0004EPSS

2024-04-07 08:15 AM
28
cve
cve

CVE-2023-52715

The SystemUI module has a vulnerability in permission management. Impact: Successful exploitation of this vulnerability may affect...

6.8AI Score

0.0004EPSS

2024-04-07 09:15 AM
25
cve
cve

CVE-2020-12695

The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger...

7.5CVSS

7.6AI Score

0.005EPSS

2020-06-08 05:15 PM
478
3
cve
cve

CVE-2023-52379

Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-02-18 07:15 AM
65
cve
cve

CVE-2023-52372

Vulnerability of input parameter verification in the motor module.Successful exploitation of this vulnerability may affect...

6.7AI Score

0.0004EPSS

2024-02-18 04:15 AM
3124
cve
cve

CVE-2023-52371

Vulnerability of null references in the motor module.Successful exploitation of this vulnerability may affect...

6.7AI Score

0.0004EPSS

2024-02-18 04:15 AM
3116
cve
cve

CVE-2023-52362

Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect...

6.8AI Score

0.0004EPSS

2024-02-18 03:15 AM
3130
cve
cve

CVE-2023-52380

Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect service...

6.7AI Score

0.0004EPSS

2024-02-18 07:15 AM
3126
cve
cve

CVE-2023-52376

Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service...

6.7AI Score

0.0004EPSS

2024-02-18 06:15 AM
3121
cve
cve

CVE-2023-52366

Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform...

6.6AI Score

0.0004EPSS

2024-02-18 04:15 AM
3114
cve
cve

CVE-2023-52365

Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform...

6.6AI Score

0.0004EPSS

2024-02-18 03:15 AM
3085
cve
cve

CVE-2023-52360

Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service...

6.9AI Score

0.0004EPSS

2024-02-18 03:15 AM
3131
cve
cve

CVE-2023-52370

Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file...

7AI Score

0.0004EPSS

2024-02-18 04:15 AM
3131
cve
cve

CVE-2023-52387

Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may affect service...

6.8AI Score

0.0004EPSS

2024-02-18 03:15 AM
3088
cve
cve

CVE-2023-52381

Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and...

7.1AI Score

0.0004EPSS

2024-02-18 07:15 AM
3127
cve
cve

CVE-2023-52375

Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect...

6.8AI Score

0.0004EPSS

2024-02-18 06:15 AM
3121
cve
cve

CVE-2023-52373

Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file...

6.7AI Score

0.0004EPSS

2024-02-18 04:15 AM
3118
cve
cve

CVE-2023-52361

The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful exploitation of this vulnerability may affect...

7AI Score

0.0004EPSS

2024-02-18 03:15 AM
2264
cve
cve

CVE-2009-2272

The Huawei D100 stores the administrator's account name and password in cleartext in a cookie, which allows context-dependent attackers to obtain sensitive information by (1) reading a cookie file, by (2) sniffing the network for HTTP headers, and possibly by using unspecified other...

7.5CVSS

7.4AI Score

0.001EPSS

2009-07-01 01:00 PM
30
cve
cve

CVE-2016-8769

Huawei UTPS earlier than UTPS-V200R003B015D16SPC00C983 has an unquoted service path vulnerability which can lead to the truncation of UTPS service query paths. An attacker may put an executable file in the search path of the affected service and obtain elevated privileges after the executable file....

6.7CVSS

6.6AI Score

0.001EPSS

2017-11-15 12:00 AM
33
cve
cve

CVE-2020-0022

In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product:...

8.8CVSS

8.7AI Score

0.014EPSS

2020-02-13 03:15 PM
122
1
cve
cve

CVE-2023-44109

Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service...

7.5CVSS

7.5AI Score

0.001EPSS

2023-10-11 11:15 AM
21
cve
cve

CVE-2021-33631

Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Overflow.This issue affects openEuler kernel: from 4.19.90 before 4.19.90-2401.3, from 5.10.0-60.18.0 before...

7.8CVSS

7.3AI Score

0.0004EPSS

2024-01-18 03:15 PM
28
cve
cve

CVE-2023-52116

Permission management vulnerability in the multi-screen interaction module. Successful exploitation of this vulnerability may cause service exceptions of the...

7.5CVSS

7.5AI Score

0.0005EPSS

2024-01-16 09:15 AM
8
cve
cve

CVE-2023-52112

Unauthorized file access vulnerability in the wallpaper service module. Successful exploitation of this vulnerability may cause features to perform...

5.3CVSS

5.3AI Score

0.0005EPSS

2024-01-16 08:15 AM
10
cve
cve

CVE-2023-44117

Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service...

7.5CVSS

7.4AI Score

0.001EPSS

2024-01-16 08:15 AM
15
Total number of security vulnerabilities1942