Harmonyos
by Huawei
CVEs (1,079)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-46892 | Hig | 0.49 | 7.5 | 0.00 | Jul 6, 2023 | Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2021-46893 | Hig | 0.49 | 7.5 | 0.00 | Jul 5, 2023 | Vulnerability of unstrict data verification and parameter check. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2023-34166 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart. | ||
| CVE-2023-34163 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Permission control vulnerability in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2023-34162 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Version update determination vulnerability in the user profile module.Successful exploitation of this vulnerability may cause repeated HMS Core updates and cause services to fail. | ||
| CVE-2023-34161 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | nappropriate authorization vulnerability in the SettingsProvider module.Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2023-34155 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2022-48496 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Vulnerability of lax app identity verification in the pre-authorization function.Successful exploitation of this vulnerability will cause malicious apps to become pre-authorized. | ||
| CVE-2022-48494 | Hig | 0.49 | 7.5 | 0.00 | Jun 19, 2023 | Vulnerability of lax app identity verification in the pre-authorization function.Successful exploitation of this vulnerability will cause malicious apps to become pre-authorized. | ||
| CVE-2023-31227 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The hwPartsDFR module has a vulnerability in API calling verification. Successful exploitation of this vulnerability may affect device confidentiality. | ||
| CVE-2023-31226 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The SDK for the MediaPlaybackController module has improper permission verification. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2023-0116 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The reminder module lacks an authentication mechanism for broadcasts received. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46886 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46885 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46884 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46883 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46882 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46881 | Hig | 0.49 | 7.5 | 0.00 | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-1696 | Hig | 0.49 | 7.5 | 0.00 | May 20, 2023 | The multimedia video module has a vulnerability in data processing.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-1694 | Hig | 0.49 | 7.5 | 0.00 | May 20, 2023 | The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality. |
- risk 0.49cvss 7.5epss 0.00
Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of unstrict data verification and parameter check. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart.
- risk 0.49cvss 7.5epss 0.00
Permission control vulnerability in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.49cvss 7.5epss 0.00
Version update determination vulnerability in the user profile module.Successful exploitation of this vulnerability may cause repeated HMS Core updates and cause services to fail.
- risk 0.49cvss 7.5epss 0.00
nappropriate authorization vulnerability in the SettingsProvider module.Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of lax app identity verification in the pre-authorization function.Successful exploitation of this vulnerability will cause malicious apps to become pre-authorized.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of lax app identity verification in the pre-authorization function.Successful exploitation of this vulnerability will cause malicious apps to become pre-authorized.
- risk 0.49cvss 7.5epss 0.00
The hwPartsDFR module has a vulnerability in API calling verification. Successful exploitation of this vulnerability may affect device confidentiality.
- risk 0.49cvss 7.5epss 0.00
The SDK for the MediaPlaybackController module has improper permission verification. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.00
The reminder module lacks an authentication mechanism for broadcasts received. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The multimedia video module has a vulnerability in data processing.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.
Page 19 of 54