VYPR

Magic UI

by Huawei

CVEs (253)

  • CVE-2022-37005HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.00

    The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-37004HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.

  • CVE-2021-40034HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.

  • CVE-2021-40030HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.00

    The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-34743HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-34742HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-34739HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings.

  • CVE-2022-34738HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.

  • CVE-2021-46741HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity.

  • CVE-2021-40012HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.

  • CVE-2022-31761HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.

  • CVE-2022-31757HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The setting module has a vulnerability of improper use of APIs. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-31754HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Logical defects in code implementation in some products. Successful exploitation of this vulnerability may affect the availability of some features.

  • CVE-2022-31753HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2021-46813HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of this vulnerability may affect availability.

  • CVE-2021-46814HigJun 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-22252HigMay 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The DFX module has a UAF vulnerability.Successful exploitation of this vulnerability may affect system stability.

  • CVE-2021-46788HigMay 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Third-party pop-up window coverage vulnerability in the iConnect module.Successful exploitation of this vulnerability may cause system pop-up window may be covered to mislead users to perform incorrect operations.

  • CVE-2021-46787HigMay 13, 2022
    risk 0.49cvss 7.5epss 0.01

    The AMS module has a vulnerability of improper permission control.Successful exploitation of this vulnerability may cause non-system application processes to crash.

  • CVE-2022-22257HigApr 11, 2022
    risk 0.49cvss 7.5epss 0.01

    The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity.

Page 5 of 13