Vendor CVEs
Huawei
All CVEs
2,386 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-34862 | Med | 0.41 | 6.3 | 0.00 | Apr 13, 2026 | Race condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-34861 | Med | 0.41 | 6.3 | 0.00 | Apr 13, 2026 | Race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-24923 | Med | 0.41 | 6.3 | 0.00 | Feb 6, 2026 | Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-54623 | Med | 0.41 | 6.3 | 0.00 | Aug 6, 2025 | Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46590 | Med | 0.41 | 6.3 | 0.00 | May 6, 2025 | Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions. | ||
| CVE-2024-56450 | Med | 0.41 | 6.3 | 0.00 | Jan 8, 2025 | Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2020-9253 | Med | 0.41 | 6.3 | 0.00 | Dec 27, 2024 | There is a stack overflow vulnerability in some Huawei smart phone. An attacker can craft specific packet to exploit this vulnerability. Due to insufficient verification, this could be exploited to tamper with the information to affect the availability. (Vulnerability ID:… | ||
| CVE-2023-52364 | Med | 0.41 | 6.3 | 0.00 | Apr 8, 2024 | Vulnerability of input parameters being not strictly verified in the RSMC module. Impact: Successful exploitation of this vulnerability may cause out-of-bounds write. | ||
| CVE-2020-1839 | Med | 0.41 | 6.3 | 0.00 | Jul 6, 2020 | HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing window exists in which certain pointer members can be modified by another process that is operating concurrently, an attacker should trick the user into… | ||
| CVE-2019-5236 | Med | 0.41 | 6.3 | 0.01 | Aug 8, 2019 | Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C432), 8.1.0.135(C782), 8.1.0.154(C10), 8.1.0.154(C461), 8.1.0.154(C635), 8.1.0.156(C185), 8.1.0.156(C605), 8.1.0.159(C636) have a double free vulnerability. An attacker can trick a user to click a URL to exploit this… | ||
| CVE-2026-49307 | Med | 0.40 | 6.2 | 0.00 | Aug 17, 2026 | Permission control vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-49305 | Med | 0.40 | 6.2 | 0.00 | Aug 17, 2026 | Permission control vulnerability in the Wi-Fi enhancement module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-49304 | Med | 0.40 | 6.2 | 0.00 | Aug 17, 2026 | Permission control vulnerability in the device key management module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-49302 | Med | 0.40 | 6.2 | 0.00 | Aug 17, 2026 | Permission control vulnerability in the notification service module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-49301 | Med | 0.40 | 6.2 | 0.00 | Aug 17, 2026 | Permission control vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-41969 | Med | 0.40 | 6.2 | 0.00 | May 15, 2026 | Permission control vulnerability in the projection module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-34852 | Med | 0.40 | 6.1 | 0.00 | Apr 13, 2026 | Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-28544 | Med | 0.40 | 6.2 | 0.00 | Mar 5, 2026 | Race condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-28539 | Med | 0.40 | 6.2 | 0.00 | Mar 5, 2026 | Data processing vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-24924 | Med | 0.40 | 6.1 | 0.00 | Feb 6, 2026 | Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2026-24920 | Med | 0.40 | 6.2 | 0.00 | Feb 6, 2026 | Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-24915 | Med | 0.40 | 6.2 | 0.00 | Feb 6, 2026 | Out-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2025-68970 | Med | 0.40 | 6.1 | 0.00 | Jan 14, 2026 | Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-68964 | Med | 0.40 | 6.2 | 0.00 | Jan 14, 2026 | Data verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-68959 | Med | 0.40 | 6.2 | 0.00 | Jan 14, 2026 | Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-66325 | Med | 0.40 | 6.2 | 0.00 | Dec 8, 2025 | Permission control vulnerability in the package management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-58305 | Med | 0.40 | 6.2 | 0.00 | Nov 28, 2025 | Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-58294 | Med | 0.40 | 6.2 | 0.00 | Nov 28, 2025 | Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-58301 | Med | 0.40 | 6.2 | 0.00 | Oct 11, 2025 | Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-58300 | Med | 0.40 | 6.2 | 0.00 | Oct 11, 2025 | Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-58278 | Med | 0.40 | 6.2 | 0.00 | Oct 11, 2025 | Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-54654 | Med | 0.40 | 6.2 | 0.00 | Oct 11, 2025 | Permission control vulnerability in the Gallery module. Successful exploitation of this vulnerability may affect service confidentiality | ||
| CVE-2025-54615 | Med | 0.40 | 6.2 | 0.00 | Aug 6, 2025 | Vulnerability of insufficient information protection in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-54614 | Med | 0.40 | 6.2 | 0.00 | Aug 6, 2025 | Input verification vulnerability in the home screen module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-54608 | Med | 0.40 | 6.2 | 0.00 | Aug 6, 2025 | Vulnerability that allows setting screen rotation direction without permission verification in the screen management module. Impact: Successful exploitation of this vulnerability may cause device screen orientation to be arbitrarily set. | ||
| CVE-2025-48907 | Med | 0.40 | 6.2 | 0.00 | Jun 6, 2025 | Deserialization vulnerability in the IPC module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46591 | Med | 0.40 | 6.2 | 0.00 | May 6, 2025 | Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-46587 | Med | 0.40 | 6.2 | 0.00 | May 6, 2025 | Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-58252 | Med | 0.40 | 6.2 | 0.00 | May 6, 2025 | Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-58050 | Med | 0.40 | 6.2 | 0.00 | Mar 4, 2025 | Vulnerability of improper access permission in the HDC module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-58046 | Med | 0.40 | 6.2 | 0.00 | Mar 4, 2025 | Permission management vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-57962 | Med | 0.40 | 6.1 | 0.00 | Feb 6, 2025 | Vulnerability of incomplete verification information in the VPN service module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-57959 | Med | 0.40 | 6.1 | 0.00 | Feb 6, 2025 | Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2024-57955 | Med | 0.40 | 6.1 | 0.00 | Feb 6, 2025 | Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-57954 | Med | 0.40 | 6.2 | 0.00 | Feb 6, 2025 | Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-12602 | Med | 0.40 | 6.2 | 0.00 | Feb 6, 2025 | Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-54121 | Med | 0.40 | 6.2 | 0.00 | Jan 8, 2025 | Startup control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2024-56443 | Med | 0.40 | 6.2 | 0.00 | Jan 8, 2025 | Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-56440 | Med | 0.40 | 6.2 | 0.00 | Jan 8, 2025 | Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2023-52953 | Med | 0.40 | 6.2 | 0.00 | Jan 8, 2025 | Path traversal vulnerability in the Medialibrary module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. |
- risk 0.41cvss 6.3epss 0.00
Race condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.41cvss 6.3epss 0.00
Race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.41cvss 6.3epss 0.00
Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.41cvss 6.3epss 0.00
Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.41cvss 6.3epss 0.00
Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions.
- risk 0.41cvss 6.3epss 0.00
Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.41cvss 6.3epss 0.00
There is a stack overflow vulnerability in some Huawei smart phone. An attacker can craft specific packet to exploit this vulnerability. Due to insufficient verification, this could be exploited to tamper with the information to affect the availability. (Vulnerability ID:…
- risk 0.41cvss 6.3epss 0.00
Vulnerability of input parameters being not strictly verified in the RSMC module. Impact: Successful exploitation of this vulnerability may cause out-of-bounds write.
- risk 0.41cvss 6.3epss 0.00
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing window exists in which certain pointer members can be modified by another process that is operating concurrently, an attacker should trick the user into…
- risk 0.41cvss 6.3epss 0.01
Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C432), 8.1.0.135(C782), 8.1.0.154(C10), 8.1.0.154(C461), 8.1.0.154(C635), 8.1.0.156(C185), 8.1.0.156(C605), 8.1.0.159(C636) have a double free vulnerability. An attacker can trick a user to click a URL to exploit this…
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the Wi-Fi enhancement module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the device key management module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the notification service module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the projection module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.1epss 0.00
Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Race condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Data processing vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.1epss 0.00
Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Out-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.40cvss 6.1epss 0.00
Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Data verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the package management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the Gallery module. Successful exploitation of this vulnerability may affect service confidentiality
- risk 0.40cvss 6.2epss 0.00
Vulnerability of insufficient information protection in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Input verification vulnerability in the home screen module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Vulnerability that allows setting screen rotation direction without permission verification in the screen management module. Impact: Successful exploitation of this vulnerability may cause device screen orientation to be arbitrarily set.
- risk 0.40cvss 6.2epss 0.00
Deserialization vulnerability in the IPC module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.2epss 0.00
Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Vulnerability of improper access permission in the HDC module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission management vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.1epss 0.00
Vulnerability of incomplete verification information in the VPN service module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.40cvss 6.1epss 0.00
Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.40cvss 6.1epss 0.00
Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Startup control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.40cvss 6.2epss 0.00
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.40cvss 6.2epss 0.00
Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.40cvss 6.2epss 0.00
Path traversal vulnerability in the Medialibrary module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Page 30 of 48