Vendor CVEs
Huawei
All CVEs
2,386 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-34742 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-34739 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings. | ||
| CVE-2022-34738 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background. | ||
| CVE-2022-34736 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. | ||
| CVE-2022-34735 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. | ||
| CVE-2021-46741 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity. | ||
| CVE-2021-40012 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2021-39999 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | There is a buffer overflow vulnerability in eSE620X vESS V100R001C10SPC200 and V100R001C20SPC200. An attacker can exploit this vulnerability by sending a specific message to the target device due to insufficient validation of packets. Successful exploit could cause a denial of… | ||
| CVE-2022-29798 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | There is a denial of service vulnerability in CV81-WDM FW versions 01.70.49.29.46. Successful exploitation could cause denial of service. | ||
| CVE-2022-31761 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality. | ||
| CVE-2022-31757 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | The setting module has a vulnerability of improper use of APIs. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-31754 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | Logical defects in code implementation in some products. Successful exploitation of this vulnerability may affect the availability of some features. | ||
| CVE-2022-31753 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of this vulnerability may affect system availability. | ||
| CVE-2021-46813 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-46812 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may affect data integrity. | ||
| CVE-2021-46814 | Hig | 0.49 | 7.5 | 0.01 | Jun 13, 2022 | The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability may affect system availability. | ||
| CVE-2022-22252 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The DFX module has a UAF vulnerability.Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2022-29796 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services. | ||
| CVE-2022-29795 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. | ||
| CVE-2022-29793 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | There is a configuration defect in the activation lock of mobile phones.Successful exploitation of this vulnerability may affect application availability. | ||
| CVE-2022-29792 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The chip component has a vulnerability of disclosing CPU SNs.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-29791 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services. | ||
| CVE-2022-29790 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The graphics acceleration service has a vulnerability in multi-thread access to the database.Successful exploitation of this vulnerability may cause service exceptions. | ||
| CVE-2022-29789 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The HiAIserver has a vulnerability in verifying the validity of the properties used in the model.Successful exploitation of this vulnerability will affect AI services. | ||
| CVE-2022-22261 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services. | ||
| CVE-2021-46789 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | Configuration defects in the secure OS module. Successful exploitation of this vulnerability can affect availability. | ||
| CVE-2021-46788 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | Third-party pop-up window coverage vulnerability in the iConnect module.Successful exploitation of this vulnerability may cause system pop-up window may be covered to mislead users to perform incorrect operations. | ||
| CVE-2021-46787 | Hig | 0.49 | 7.5 | 0.01 | May 13, 2022 | The AMS module has a vulnerability of improper permission control.Successful exploitation of this vulnerability may cause non-system application processes to crash. | ||
| CVE-2022-22257 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity. | ||
| CVE-2022-22256 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-22255 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The application framework has a common DoS vulnerability.Successful exploitation of this vulnerability may affect the availability. | ||
| CVE-2022-22254 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-22253 | Hig | 0.49 | 7.5 | 0.00 | Apr 11, 2022 | The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2021-46740 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The device authentication service module has a defect vulnerability introduced in the design process.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-40065 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The communication module has a service logic error vulnerability.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-40064 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2021-40063 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2021-40062 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40061 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-40060 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40058 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40057 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40056 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40054 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-40052 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40051 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentiality. | ||
| CVE-2021-40049 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to sensitive system information being obtained without authorization. | ||
| CVE-2021-40048 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework. Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2021-40047 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-37027 | Hig | 0.49 | 7.5 | 0.01 | Feb 25, 2022 | There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service integrity. |
- risk 0.49cvss 7.5epss 0.01
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings.
- risk 0.49cvss 7.5epss 0.01
The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.
- risk 0.49cvss 7.5epss 0.01
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
- risk 0.49cvss 7.5epss 0.01
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
- risk 0.49cvss 7.5epss 0.01
The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity.
- risk 0.49cvss 7.5epss 0.01
Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a buffer overflow vulnerability in eSE620X vESS V100R001C10SPC200 and V100R001C20SPC200. An attacker can exploit this vulnerability by sending a specific message to the target device due to insufficient validation of packets. Successful exploit could cause a denial of…
- risk 0.49cvss 7.5epss 0.01
There is a denial of service vulnerability in CV81-WDM FW versions 01.70.49.29.46. Successful exploitation could cause denial of service.
- risk 0.49cvss 7.5epss 0.01
Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
The setting module has a vulnerability of improper use of APIs. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
Logical defects in code implementation in some products. Successful exploitation of this vulnerability may affect the availability of some features.
- risk 0.49cvss 7.5epss 0.01
The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of this vulnerability may affect system availability.
- risk 0.49cvss 7.5epss 0.01
Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may affect data integrity.
- risk 0.49cvss 7.5epss 0.01
The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability may affect system availability.
- risk 0.49cvss 7.5epss 0.01
The DFX module has a UAF vulnerability.Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services.
- risk 0.49cvss 7.5epss 0.01
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
- risk 0.49cvss 7.5epss 0.01
There is a configuration defect in the activation lock of mobile phones.Successful exploitation of this vulnerability may affect application availability.
- risk 0.49cvss 7.5epss 0.01
The chip component has a vulnerability of disclosing CPU SNs.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services.
- risk 0.49cvss 7.5epss 0.01
The graphics acceleration service has a vulnerability in multi-thread access to the database.Successful exploitation of this vulnerability may cause service exceptions.
- risk 0.49cvss 7.5epss 0.01
The HiAIserver has a vulnerability in verifying the validity of the properties used in the model.Successful exploitation of this vulnerability will affect AI services.
- risk 0.49cvss 7.5epss 0.01
The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services.
- risk 0.49cvss 7.5epss 0.01
Configuration defects in the secure OS module. Successful exploitation of this vulnerability can affect availability.
- risk 0.49cvss 7.5epss 0.01
Third-party pop-up window coverage vulnerability in the iConnect module.Successful exploitation of this vulnerability may cause system pop-up window may be covered to mislead users to perform incorrect operations.
- risk 0.49cvss 7.5epss 0.01
The AMS module has a vulnerability of improper permission control.Successful exploitation of this vulnerability may cause non-system application processes to crash.
- risk 0.49cvss 7.5epss 0.01
The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity.
- risk 0.49cvss 7.5epss 0.01
The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The application framework has a common DoS vulnerability.Successful exploitation of this vulnerability may affect the availability.
- risk 0.49cvss 7.5epss 0.01
A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
The device authentication service module has a defect vulnerability introduced in the design process.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The communication module has a service logic error vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to sensitive system information being obtained without authorization.
- risk 0.49cvss 7.5epss 0.01
There is an incorrect buffer size calculation vulnerability in the video framework. Successful exploitation of this vulnerability will affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Page 17 of 48