Harmonyos
by Huawei
CVEs (1,079)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-30414 | Hig | 0.49 | 7.5 | 0.01 | Apr 7, 2024 | Command injection vulnerability in the AccountManager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-30413 | Hig | 0.49 | 7.5 | 0.00 | Apr 7, 2024 | Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2023-52379 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2022-48621 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52376 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52375 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52374 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Permission control vulnerability in the package management module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52373 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file sharing. | ||
| CVE-2023-52372 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Vulnerability of input parameter verification in the motor module.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52366 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2023-52387 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52362 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52361 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2023-52360 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service integrity. | ||
| CVE-2023-52357 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52097 | Hig | 0.49 | 7.5 | 0.00 | Feb 18, 2024 | Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52105 | Hig | 0.49 | 7.5 | 0.00 | Jan 16, 2024 | The nearby module has a privilege escalation vulnerability. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52104 | Hig | 0.49 | 7.5 | 0.00 | Jan 16, 2024 | Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52102 | Hig | 0.49 | 7.5 | 0.00 | Jan 16, 2024 | Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52100 | Hig | 0.49 | 7.5 | 0.00 | Jan 16, 2024 | The Celia Keyboard module has a vulnerability in access control. Successful exploitation of this vulnerability may affect availability. |
- risk 0.49cvss 7.5epss 0.01
Command injection vulnerability in the AccountManager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.49cvss 7.5epss 0.00
Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Permission control vulnerability in the package management module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file sharing.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of input parameter verification in the motor module.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.49cvss 7.5epss 0.00
Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.00
Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service integrity.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
The nearby module has a privilege escalation vulnerability. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
The Celia Keyboard module has a vulnerability in access control. Successful exploitation of this vulnerability may affect availability.
Page 13 of 54