VYPR

Vendor CVEs

Huawei

All CVEs

2,386 total · sorted by risk
  • CVE-2022-44550HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.00

    The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-44549HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.00

    The LBS module has a vulnerability in geofencing API access. Successful exploitation of this vulnerability may cause third-party apps to access the geofencing APIs without authorization, affecting user confidentiality.

  • CVE-2022-44547HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.00

    The Display Service module has a UAF vulnerability. Successful exploitation of this vulnerability may affect the display service availability.

  • CVE-2022-44546HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.00

    The kernel module has the vulnerability that the mapping is not cleared after the memory is automatically released. Successful exploitation of this vulnerability may cause a system restart.

  • CVE-2021-46852HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.00

    The memory management module has the logic bypass vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-44556HigNov 8, 2022
    risk 0.49cvss 7.5epss 0.00

    Missing parameter type validation in the DRM module. Successful exploitation of this vulnerability may affect availability.

  • CVE-2022-41589HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.01

    The DFX unwind stack module of the ArkCompiler has a vulnerability in interface calling.Successful exploitation of this vulnerability affects system services and device availability.

  • CVE-2022-41588HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The home screen module has a vulnerability in service logic processing.Successful exploitation of this vulnerability may affect data integrity.

  • CVE-2022-41586HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The communication framework module has a vulnerability of not truncating data properly.Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-41583HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The storage maintenance and debugging module has an array out-of-bounds read vulnerability.Successful exploitation of this vulnerability will cause incorrect statistics of this module.

  • CVE-2022-41582HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.01

    The security module has configuration defects.Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-39011HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The HISP module has a vulnerability of bypassing the check of the data transferred in the kernel space.Successful exploitation of this vulnerability may cause unauthorized access to the HISP module.

  • CVE-2022-38998HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The HISP module has a vulnerability of not verifying the data transferred in the kernel space.Successful exploitation of this vulnerability will cause out-of-bounds read, which affects data confidentiality.

  • CVE-2022-38985HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The facial recognition module has a vulnerability in input validation.Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38984HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The HIPP module has a vulnerability of not verifying the data transferred in the kernel space.Successful exploitation of this vulnerability will cause out-of-bounds read, which affects data confidentiality.

  • CVE-2022-38981HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The HwAirlink module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause information leakage.

  • CVE-2022-38977HigOct 14, 2022
    risk 0.49cvss 7.5epss 0.00

    The HwAirlink module has a heap overflow vulnerability.Successful exploitation of this vulnerability may cause out-of-bounds writes, resulting in modification of sensitive data.

  • CVE-2022-37395HigSep 20, 2022
    risk 0.49cvss 7.5epss 0.01

    A Huawei device has an input verification vulnerability. Successful exploitation of this vulnerability may lead to DoS attacks.Affected product versions include:CV81-WDM FW versions 01.70.49.29.46.

  • CVE-2022-39010HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The HwChrService module has a vulnerability in permission control. Successful exploitation of this vulnerability may cause disclosure of user network information.

  • CVE-2022-39005HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.

  • CVE-2022-39004HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.

  • CVE-2022-39001HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure.

  • CVE-2022-38997HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38996HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38995HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38994HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38993HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38992HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38991HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38990HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38989HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38988HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38987HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.

  • CVE-2022-38979HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-38978HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2021-46836HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2021-40024HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2021-40023HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.00

    Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.

  • CVE-2020-36601HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerability may cause a panic reboot.

  • CVE-2020-36600HigSep 16, 2022
    risk 0.49cvss 7.5epss 0.01

    Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cause the system to restart.

  • CVE-2022-37008HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.00

    The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.

  • CVE-2022-37007HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.

  • CVE-2022-37006HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service availability.

  • CVE-2022-37005HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-37004HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.

  • CVE-2022-37001HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The diag-router module has a vulnerability in intercepting excessive long and short instructions. Successful exploitation of this vulnerability will cause the diag-router module to crash.

  • CVE-2021-40040HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality.

  • CVE-2021-40034HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.

  • CVE-2021-40030HigAug 10, 2022
    risk 0.49cvss 7.5epss 0.01

    The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2022-34743HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.

Page 16 of 48