Emui
by Huawei
CVEs (820)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-57961 | Med | 0.44 | 6.8 | 0.00 | Feb 6, 2025 | Out-of-bounds write vulnerability in the emcom module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2024-56448 | Med | 0.44 | 6.7 | 0.00 | Jan 8, 2025 | Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-54099 | Med | 0.44 | 6.7 | 0.00 | Dec 12, 2024 | File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. | ||
| CVE-2024-9136 | Med | 0.44 | 6.7 | 0.00 | Sep 27, 2024 | Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-39673 | Med | 0.44 | 6.8 | 0.00 | Jul 25, 2024 | Vulnerability of serialisation/deserialisation mismatch in the iAware module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-36499 | Med | 0.44 | 6.8 | 0.00 | Jun 14, 2024 | Vulnerability of unauthorized screenshot capturing in the WMS module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-32999 | Med | 0.44 | 6.8 | 0.00 | May 14, 2024 | Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2021-22316 | Med | 0.44 | 6.8 | 0.00 | Jun 3, 2021 | There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and… | ||
| CVE-2025-58314 | Med | 0.43 | 6.6 | 0.00 | Nov 28, 2025 | Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2025-54644 | Med | 0.43 | 6.6 | 0.00 | Aug 6, 2025 | Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-54643 | Med | 0.43 | 6.6 | 0.00 | Aug 6, 2025 | Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-53185 | Med | 0.43 | 6.6 | 0.00 | Jul 7, 2025 | Virtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access released memory Impact: Successful exploitation of this vulnerability may affect service integrity. | ||
| CVE-2025-48902 | Med | 0.43 | 6.6 | 0.00 | Jun 6, 2025 | Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-56449 | Med | 0.43 | 6.6 | 0.00 | Jan 8, 2025 | Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-51530 | Med | 0.43 | 6.6 | 0.00 | Nov 5, 2024 | LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-42034 | Med | 0.43 | 6.6 | 0.00 | Aug 8, 2024 | LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-28552 | Med | 0.42 | 6.5 | 0.00 | Mar 5, 2026 | Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-24917 | Med | 0.42 | 6.5 | 0.00 | Feb 6, 2026 | UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52955 | Med | 0.42 | 6.5 | 0.00 | Jan 8, 2025 | Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2024-4046 | Med | 0.42 | 6.4 | 0.00 | May 14, 2024 | Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability. |
- risk 0.44cvss 6.8epss 0.00
Out-of-bounds write vulnerability in the emcom module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.44cvss 6.7epss 0.00
Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.44cvss 6.7epss 0.00
File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
- risk 0.44cvss 6.7epss 0.00
Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.44cvss 6.8epss 0.00
Vulnerability of serialisation/deserialisation mismatch in the iAware module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.44cvss 6.8epss 0.00
Vulnerability of unauthorized screenshot capturing in the WMS module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.44cvss 6.8epss 0.00
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.44cvss 6.8epss 0.00
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and…
- risk 0.43cvss 6.6epss 0.00
Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.43cvss 6.6epss 0.00
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.43cvss 6.6epss 0.00
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.43cvss 6.6epss 0.00
Virtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access released memory Impact: Successful exploitation of this vulnerability may affect service integrity.
- risk 0.43cvss 6.6epss 0.00
Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.43cvss 6.6epss 0.00
Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.43cvss 6.6epss 0.00
LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.43cvss 6.6epss 0.00
LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.42cvss 6.5epss 0.00
Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.42cvss 6.5epss 0.00
UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.42cvss 6.5epss 0.00
Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.42cvss 6.4epss 0.00
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
Page 31 of 41