VYPR

Harmonyos

by Huawei

CVEs (1,079)

  • CVE-2023-34157CriJun 16, 2023
    risk 0.65cvss 10.0epss 0.00

    Vulnerability of HwWatchHealth being hijacked.Successful exploitation of this vulnerability may cause repeated pop-up windows of the app.

  • CVE-2023-52381CriFeb 18, 2024
    risk 0.64cvss 9.8epss 0.00

    Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.

  • CVE-2023-52378CriFeb 18, 2024
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause features to perform abnormally.

  • CVE-2023-52370CriFeb 18, 2024
    risk 0.64cvss 9.8epss 0.00

    Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file access.

  • CVE-2023-52103CriJan 16, 2024
    risk 0.64cvss 9.8epss 0.00

    Buffer overflow vulnerability in the FLP module. Successful exploitation of this vulnerability may cause out-of-bounds read.

  • CVE-2023-46773CriDec 6, 2023
    risk 0.64cvss 9.8epss 0.01

    Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege escalation.

  • CVE-2023-44116CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.

  • CVE-2023-44105CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally.

  • CVE-2023-44106CriOct 11, 2023
    risk 0.64cvss 9.8epss 0.00

    API permission management vulnerability in the Fwk-Display module.Successful exploitation of this vulnerability may cause features to perform abnormally.

  • CVE-2022-48605CriSep 25, 2023
    risk 0.64cvss 9.8epss 0.00

    Input verification vulnerability in the fingerprint module. Successful exploitation of this vulnerability will affect confidentiality, integrity, and availability.

  • CVE-2023-41297CriSep 25, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of defects introduced in the design process in the HiviewTunner module. Successful exploitation of this vulnerability may cause service hijacking.

  • CVE-2023-41294CriSep 25, 2023
    risk 0.64cvss 9.8epss 0.00

    The DP module has a service hijacking vulnerability.Successful exploitation of this vulnerability may affect some Super Device services.

  • CVE-2023-39405CriAug 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of out-of-bounds parameter read/write in the Wi-Fi module. Successful exploitation of this vulnerability may cause other apps to be executed with escalated privileges.

  • CVE-2023-37242CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of commands from the modem being intercepted in the atcmdserver module. Attackers may exploit this vulnerability to rewrite the non-volatile random-access memory (NVRAM), or facilitate the exploitation of other vulnerabilities.

  • CVE-2022-48513CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of identity verification being bypassed in the Gallery module. Successful exploitation of this vulnerability may cause out-of-bounds access.

  • CVE-2022-48512CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of this vulnerability may cause the image decoding feature to perform abnormally.

  • CVE-2022-48511CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions. Successful exploitation of this vulnerability may cause audio features to perform abnormally.

  • CVE-2022-48510CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Input verification vulnerability in the AMS module. Successful exploitation of this vulnerability will cause unauthorized operations.

  • CVE-2021-46894CriJul 6, 2023
    risk 0.64cvss 9.8epss 0.00

    Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel privilege escalation.

  • CVE-2021-46891CriJul 5, 2023
    risk 0.64cvss 9.8epss 0.00

    Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.

Page 1 of 54