Harmonyos
by Huawei
CVEs (1,079)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-37112 | Med | 0.34 | 5.3 | 0.00 | Jan 3, 2022 | Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak. | ||
| CVE-2021-37093 | Med | 0.34 | 5.3 | 0.01 | Dec 8, 2021 | There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages. | ||
| CVE-2021-37058 | Med | 0.34 | 5.3 | 0.00 | Dec 7, 2021 | There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user's nickname is maliciously tampered with. | ||
| CVE-2026-34866 | Med | 0.33 | 5.1 | 0.00 | Apr 13, 2026 | Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2026-28537 | Med | 0.33 | 5.1 | 0.00 | Mar 5, 2026 | Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-68966 | Med | 0.33 | 5.1 | 0.00 | Jan 14, 2026 | Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-68962 | Med | 0.33 | 5.1 | 0.00 | Jan 14, 2026 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-68961 | Med | 0.33 | 5.1 | 0.00 | Jan 14, 2026 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-66322 | Med | 0.33 | 5.1 | 0.00 | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-66321 | Med | 0.33 | 5.1 | 0.00 | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-66320 | Med | 0.33 | 5.1 | 0.00 | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-64311 | Med | 0.33 | 5.1 | 0.00 | Nov 28, 2025 | Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-58312 | Med | 0.33 | 5.1 | 0.00 | Nov 28, 2025 | Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-58313 | Med | 0.33 | 5.1 | 0.00 | Sep 5, 2025 | Race condition vulnerability in the device standby module. Impact: Successful exploitation of this vulnerability may cause feature exceptions of the device standby module. | ||
| CVE-2025-54646 | Med | 0.33 | 5.1 | 0.00 | Aug 6, 2025 | Vulnerability of inadequate packet length check in the BLE module. Impact: Successful exploitation of this vulnerability may affect performance. | ||
| CVE-2025-54645 | Med | 0.33 | 5.0 | 0.00 | Aug 6, 2025 | Out-of-bounds array access issue due to insufficient data verification in the location service module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46593 | Med | 0.33 | 5.1 | 0.00 | May 6, 2025 | Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46586 | Med | 0.33 | 5.1 | 0.00 | May 6, 2025 | Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-58049 | Med | 0.33 | 5.0 | 0.00 | Mar 4, 2025 | Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-58047 | Med | 0.33 | 5.0 | 0.00 | Mar 4, 2025 | Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
- risk 0.34cvss 5.3epss 0.00
Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.
- risk 0.34cvss 5.3epss 0.01
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.
- risk 0.34cvss 5.3epss 0.00
There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user's nickname is maliciously tampered with.
- risk 0.33cvss 5.1epss 0.00
Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.33cvss 5.1epss 0.00
Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.33cvss 5.1epss 0.00
Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.33cvss 5.1epss 0.00
Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Race condition vulnerability in the device standby module. Impact: Successful exploitation of this vulnerability may cause feature exceptions of the device standby module.
- risk 0.33cvss 5.1epss 0.00
Vulnerability of inadequate packet length check in the BLE module. Impact: Successful exploitation of this vulnerability may affect performance.
- risk 0.33cvss 5.0epss 0.00
Out-of-bounds array access issue due to insufficient data verification in the location service module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.1epss 0.00
Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.33cvss 5.0epss 0.00
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.33cvss 5.0epss 0.00
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Page 48 of 54