Lucene search

K

HUAWEI Security Vulnerabilities

cve
cve

CVE-2021-22345

There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds memory write.

9.8CVSS

9.3AI Score

0.002EPSS

2021-06-30 10:15 PM
35
4
cve
cve

CVE-2021-22346

There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to the disclosure of user habits.

5.3CVSS

5.2AI Score

0.001EPSS

2021-06-30 09:15 PM
35
4
cve
cve

CVE-2021-22347

There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause temporary DoS.

5.3CVSS

5.3AI Score

0.001EPSS

2021-07-01 11:15 AM
26
5
cve
cve

CVE-2021-22348

There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute.

9.8CVSS

9.3AI Score

0.002EPSS

2021-06-30 09:15 PM
35
4
cve
cve

CVE-2021-22349

There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of insufficient input verification may cause the system to restart.

7.5CVSS

7.4AI Score

0.001EPSS

2021-06-30 09:15 PM
39
4
cve
cve

CVE-2021-22350

There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause the device to crash and restart.

7.5CVSS

7.4AI Score

0.001EPSS

2021-06-30 09:15 PM
32
4
cve
cve

CVE-2021-22351

There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may induce users to grant permissions on modifying items in the configuration table,causing system exceptions.

8.1CVSS

7.9AI Score

0.001EPSS

2021-06-30 09:15 PM
38
4
cve
cve

CVE-2021-22352

There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands.

7.8CVSS

7.6AI Score

0.001EPSS

2021-06-30 09:15 PM
35
4
cve
cve

CVE-2021-22353

There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause the kernel to restart.

7.5CVSS

7.3AI Score

0.001EPSS

2021-06-30 06:15 PM
32
4
cve
cve

CVE-2021-22354

There is an Information Disclosure Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds read.

9.1CVSS

8.9AI Score

0.002EPSS

2021-06-30 06:15 PM
26
cve
cve

CVE-2021-22356

There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can exploit this vulnerability by capturing and analyzing the messages between devices to obtain information. This can lead to information leak.Affected product versions include...

5.9CVSS

5.5AI Score

0.002EPSS

2021-11-23 04:15 PM
19
cve
cve

CVE-2021-22357

There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages due to validating inputs insufficiently. Attackers can exploit this vulnerability by sending specific messages to affected module. This can cause denial of service. Affected product versions i...

7.5CVSS

7.3AI Score

0.001EPSS

2021-08-23 08:15 PM
21
2
cve
cve

CVE-2021-22358

There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insufficient, an attacker can exploit this vulnerability to upload any files to the device. Successful exploit may cause the service abnormal.

4.3CVSS

4.6AI Score

0.001EPSS

2021-05-27 01:15 PM
26
3
cve
cve

CVE-2021-22359

There is a denial of service vulnerability in the verisions V200R005C00SPC500 of S5700 and V200R005C00SPC500 of S6700. An attacker could exploit this vulnerability by sending specific message to a targeted device. Due to insufficient input validation, successful exploit can cause the service abnorm...

7.5CVSS

7.3AI Score

0.001EPSS

2021-05-27 01:15 PM
26
5
cve
cve

CVE-2021-22360

There is a resource management error vulnerability in the verisions V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 of USG9500. An authentication attacker needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper resource management of the fun...

4.9CVSS

5.2AI Score

0.001EPSS

2021-05-27 01:15 PM
27
4
cve
cve

CVE-2021-22361

There is an improper authorization vulnerability in eCNS280 V100R005C00, V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200. A file access is not authorized correctly. Attacker with low access may launch privilege escalation in a specific scenario. This may compromise the normal serv...

7.8CVSS

7.7AI Score

0.0004EPSS

2021-06-22 06:15 PM
27
cve
cve

CVE-2021-22362

There is an out of bounds write vulnerability in some Huawei products. An attacker can exploit this vulnerability by sending crafted data in the packet to the target device. Due to insufficient validation of message, successful exploit can cause certain service abnormal.Affected product versions in...

5.3CVSS

5.3AI Score

0.001EPSS

2021-05-27 01:15 PM
25
2
cve
cve

CVE-2021-22363

There is a resource management error vulnerability in eCNS280_TD V100R005C10SPC650. An attacker needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper resource management of the function, the vulnerability can be exploited to cause service abnormal...

7.5CVSS

7.4AI Score

0.001EPSS

2021-06-22 07:15 PM
37
6
cve
cve

CVE-2021-22364

There is a denial of service vulnerability in the versions 10.1.0.126(C00E125R5P3) of HUAWEI Mate 30 and 10.1.0.152(C00E136R7P2) of HUAWEI Mate 30 (5G) . A module does not verify certain parameters sufficiently and it leads to some exceptions. Successful exploit could cause a denial of service cond...

5.5CVSS

5.4AI Score

0.0004EPSS

2021-05-27 01:15 PM
19
2
cve
cve

CVE-2021-22365

There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A local attacker can exploit this vulnerability by sending specific message to the target device. Due to insufficient validation of internal message, successful exploit may cause th...

3.3CVSS

4AI Score

0.0004EPSS

2021-06-22 06:15 PM
26
cve
cve

CVE-2021-22366

There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains an out-of-bounds read vulnerability. An attacker could crafted messages between system process, succ...

5.5CVSS

5.2AI Score

0.0004EPSS

2021-06-22 06:15 PM
36
cve
cve

CVE-2021-22367

There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to authentication bypass.

9.8CVSS

9.3AI Score

0.003EPSS

2021-06-30 06:15 PM
30
cve
cve

CVE-2021-22368

There is a Permission Control Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect normal use of the device.

7.5CVSS

7.5AI Score

0.001EPSS

2021-06-30 06:15 PM
28
4
cve
cve

CVE-2021-22369

There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Huawei Smartphone. Successful exploitation of these vulnerabilities may escalate the permission to that of the root user.

8.1CVSS

8.2AI Score

0.002EPSS

2021-06-30 03:15 PM
20
cve
cve

CVE-2021-22370

There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.

7.5CVSS

7.4AI Score

0.002EPSS

2021-06-30 02:15 PM
21
cve
cve

CVE-2021-22371

There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.

7.5CVSS

7.5AI Score

0.002EPSS

2021-06-30 03:15 PM
19
cve
cve

CVE-2021-22372

There is a Security Features Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.

7.5CVSS

7.4AI Score

0.002EPSS

2021-06-30 02:15 PM
24
cve
cve

CVE-2021-22373

There is a Defects Introduced in the Design Process Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.

9.1CVSS

9AI Score

0.001EPSS

2021-06-30 03:15 PM
19
cve
cve

CVE-2021-22374

There is an Improper Validation of Array Index Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause stability risks.

7.5CVSS

7.5AI Score

0.001EPSS

2021-06-30 03:15 PM
26
cve
cve

CVE-2021-22375

There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality,availability and integrity.

9.8CVSS

9.2AI Score

0.002EPSS

2021-06-30 02:15 PM
18
cve
cve

CVE-2021-22376

A component of the HarmonyOS has a Improper Privilege Management vulnerability. Local attackers may exploit this vulnerability to bypass user restrictions.

8.4CVSS

8.2AI Score

0.001EPSS

2021-06-30 02:15 PM
28
cve
cve

CVE-2021-22377

There is a command injection vulnerability in S12700 V200R019C00SPC500, S2700 V200R019C00SPC500, S5700 V200R019C00SPC500, S6700 V200R019C00SPC500 and S7700 V200R019C00SPC500. A module does not verify specific input sufficiently. Attackers can exploit this vulnerability by sending malicious paramete...

7.2CVSS

7.1AI Score

0.002EPSS

2021-06-22 07:15 PM
44
6
cve
cve

CVE-2021-22378

There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful exploit may cause the affected device abnormal.

5.3CVSS

5.2AI Score

0.001EPSS

2021-06-22 07:15 PM
38
4
cve
cve

CVE-2021-22379

There is an Integer Underflow (Wrap or Wraparound) Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause DoS of Samgr.

7.5CVSS

7.5AI Score

0.001EPSS

2021-08-02 05:15 PM
18
2
cve
cve

CVE-2021-22380

There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality and availability.

9.1CVSS

9AI Score

0.002EPSS

2021-06-30 02:15 PM
23
cve
cve

CVE-2021-22381

There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause an infinite loop in DoS.

7.5CVSS

7.5AI Score

0.001EPSS

2021-08-02 05:15 PM
17
3
cve
cve

CVE-2021-22382

Huawei LTE USB Dongle products have an improper permission assignment vulnerability. An attacker can locally access and log in to a PC to induce a user to install a specially crafted application. After successfully exploiting this vulnerability, the attacker can perform unauthenticated operations. ...

6.5CVSS

6.4AI Score

0.0004EPSS

2021-06-22 07:15 PM
35
3
cve
cve

CVE-2021-22383

There is an out-of-bounds read vulnerability in eCNS280_TD V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a message-handling function that contains an out-of-bounds read vulnerability. An attacker can exploit this vulnerability by s...

4.9CVSS

5AI Score

0.001EPSS

2021-06-22 07:15 PM
34
5
cve
cve

CVE-2021-22384

There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.

8.1CVSS

7.9AI Score

0.003EPSS

2021-08-02 05:15 PM
18
2
cve
cve

CVE-2021-22385

A component of the Huawei smartphone has a External Control of System or Configuration Setting vulnerability. Local attackers may exploit this vulnerability to cause Kernel Code Execution.

7.8CVSS

7.5AI Score

0.0004EPSS

2021-08-10 02:15 PM
18
cve
cve

CVE-2021-22386

A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.

7CVSS

6.7AI Score

0.0004EPSS

2021-08-10 02:15 PM
17
cve
cve

CVE-2021-22387

There is an Improper Control of Dynamically Managing Code Resources Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to remotely execute commands.

9.8CVSS

9.5AI Score

0.005EPSS

2021-08-02 05:15 PM
19
4
cve
cve

CVE-2021-22388

There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

9.8CVSS

9.3AI Score

0.002EPSS

2021-08-02 05:15 PM
21
2
cve
cve

CVE-2021-22389

There is a Permission Control Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

9.8CVSS

9.2AI Score

0.002EPSS

2021-08-02 05:15 PM
19
2
cve
cve

CVE-2021-22390

There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

9.8CVSS

9.3AI Score

0.002EPSS

2021-08-02 05:15 PM
17
3
cve
cve

CVE-2021-22391

There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.

7.5CVSS

7.5AI Score

0.001EPSS

2021-08-02 05:15 PM
15
2
cve
cve

CVE-2021-22392

There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may cause verification bypass and directions to abnormal addresses.

7.5CVSS

7.5AI Score

0.001EPSS

2021-08-02 05:15 PM
22
2
cve
cve

CVE-2021-22393

There is a denial of service vulnerability in some versions of CloudEngine 5800, CloudEngine 6800, CloudEngine 7800 and CloudEngine 12800. The affected product cannot deal with some messages because of module design weakness . Attackers can exploit this vulnerability by sending a large amount of sp...

7.5CVSS

7.3AI Score

0.001EPSS

2021-04-28 12:15 PM
20
5
cve
cve

CVE-2021-22394

There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerability may cause DoS of the apps during Multi-Screen Collaboration.

9.1CVSS

9.3AI Score

0.002EPSS

2022-02-25 07:15 PM
55
cve
cve

CVE-2021-22395

There is a code injection vulnerability in smartphones. Successful exploitation of this vulnerability may affect service confidentiality.

7.5CVSS

7.6AI Score

0.001EPSS

2022-02-25 07:15 PM
50
Total number of security vulnerabilities1850