Emui
by Huawei
CVEs (820)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-34167 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled. | ||
| CVE-2023-34160 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled. | ||
| CVE-2023-34158 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled. | ||
| CVE-2023-34156 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploitation of this vulnerability may cause services to be denied. | ||
| CVE-2022-48495 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of unauthorized access to foreground app information.Successful exploitation of this vulnerability may cause foreground app information to be obtained. | ||
| CVE-2022-48491 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of missing authentication on certain HUAWEI phones.Successful exploitation of this vulnerability can lead to ads and other windows to display at any time. | ||
| CVE-2022-48488 | Med | 0.34 | 5.3 | 0.00 | Jun 19, 2023 | Vulnerability of bypassing the default desktop security controls.Successful exploitation of this vulnerability may cause unauthorized modifications to the desktop. | ||
| CVE-2023-0117 | Med | 0.34 | 5.3 | 0.00 | May 26, 2023 | The online authentication provided by the hwKitAssistant lacks strict identity verification of applications. Successful exploitation of this vulnerability may affect availability of features,such as MeeTime. | ||
| CVE-2022-48361 | Med | 0.34 | 5.3 | 0.00 | Mar 27, 2023 | The Always On Display (AOD) has a path traversal vulnerability in theme files. Successful exploitation of this vulnerability may cause a failure in reading AOD theme resources. | ||
| CVE-2022-48296 | Med | 0.34 | 5.3 | 0.00 | Feb 9, 2023 | The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerability may cause users to receive broadcasts from malicious apps, conveying false alarm information about external storage devices. | ||
| CVE-2022-46318 | Med | 0.34 | 5.3 | 0.00 | Dec 20, 2022 | The HAware module has a function logic error. Successful exploitation of this vulnerability will affect the account removal function in Settings. | ||
| CVE-2022-44560 | Med | 0.34 | 5.3 | 0.00 | Nov 9, 2022 | The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified. | ||
| CVE-2022-44553 | Med | 0.34 | 5.3 | 0.00 | Nov 9, 2022 | The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically. | ||
| CVE-2022-41587 | Med | 0.34 | 5.3 | 0.00 | Oct 14, 2022 | Uncaptured exceptions in the home screen module. Successful exploitation of this vulnerability may affect stability. | ||
| CVE-2021-46811 | Med | 0.34 | 5.3 | 0.00 | Jun 13, 2022 | HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information. | ||
| CVE-2021-46785 | Med | 0.34 | 5.3 | 0.01 | May 13, 2022 | The Property module has a vulnerability in permission control.This vulnerability can be exploited to obtain the unique device identifier. | ||
| CVE-2021-37114 | Med | 0.34 | 5.3 | 0.01 | Jan 3, 2022 | There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2021-37093 | Med | 0.34 | 5.3 | 0.01 | Dec 8, 2021 | There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages. | ||
| CVE-2021-37056 | Med | 0.34 | 5.3 | 0.01 | Dec 7, 2021 | There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information. | ||
| CVE-2021-37055 | Med | 0.34 | 5.3 | 0.01 | Dec 7, 2021 | There is a Logic bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information. |
- risk 0.34cvss 5.3epss 0.00
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploitation of this vulnerability may cause services to be denied.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of unauthorized access to foreground app information.Successful exploitation of this vulnerability may cause foreground app information to be obtained.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of missing authentication on certain HUAWEI phones.Successful exploitation of this vulnerability can lead to ads and other windows to display at any time.
- risk 0.34cvss 5.3epss 0.00
Vulnerability of bypassing the default desktop security controls.Successful exploitation of this vulnerability may cause unauthorized modifications to the desktop.
- risk 0.34cvss 5.3epss 0.00
The online authentication provided by the hwKitAssistant lacks strict identity verification of applications. Successful exploitation of this vulnerability may affect availability of features,such as MeeTime.
- risk 0.34cvss 5.3epss 0.00
The Always On Display (AOD) has a path traversal vulnerability in theme files. Successful exploitation of this vulnerability may cause a failure in reading AOD theme resources.
- risk 0.34cvss 5.3epss 0.00
The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerability may cause users to receive broadcasts from malicious apps, conveying false alarm information about external storage devices.
- risk 0.34cvss 5.3epss 0.00
The HAware module has a function logic error. Successful exploitation of this vulnerability will affect the account removal function in Settings.
- risk 0.34cvss 5.3epss 0.00
The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified.
- risk 0.34cvss 5.3epss 0.00
The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically.
- risk 0.34cvss 5.3epss 0.00
Uncaptured exceptions in the home screen module. Successful exploitation of this vulnerability may affect stability.
- risk 0.34cvss 5.3epss 0.00
HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information.
- risk 0.34cvss 5.3epss 0.01
The Property module has a vulnerability in permission control.This vulnerability can be exploited to obtain the unique device identifier.
- risk 0.34cvss 5.3epss 0.01
There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.34cvss 5.3epss 0.01
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.
- risk 0.34cvss 5.3epss 0.01
There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.
- risk 0.34cvss 5.3epss 0.01
There is a Logic bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.
Page 38 of 41