VYPR

Vendor CVEs

Huawei

All CVEs

2,386 total · sorted by risk
  • CVE-2017-8146MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    The call module of P10 and P10 Plus smartphones with software versions before VTR-AL00C00B167, versions before VTR-TL00C01B167, versions before VKY-AL00C00B167, versions before VKY-TL00C01B167 has a DoS vulnerability. An attacker may trick a user into installing a malicious…

  • CVE-2017-8145MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    The call module of P10 and P10 Plus smartphones with software versions before VTR-AL00C00B167, versions before VTR-TL00C01B167, versions before VKY-AL00C00B167, versions before VKY-TL00C01B167 has a DoS vulnerability. An attacker may trick a user into installing a malicious…

  • CVE-2017-8144MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    Honor 5A,Honor 8 Lite,Mate9,Mate9 Pro,P10,P10 Plus Huawei smartphones with software the versions before CAM-L03C605B143CUSTC605D003,the versions before Prague-L03C605B161,the versions before Prague-L23C605B160,the versions before MHA-AL00C00B225,the versions before…

  • CVE-2017-8143MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    Wi-Fi driver of Honor 5C and P9 Lite Huawei smart phones with software versions earlier than NEM-L21C432B351 and versions earlier than VNS-L21C10B381 has a DoS vulnerability. An attacker may trick a user into installing a malicious application and the application can access…

  • CVE-2017-8136MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    HedEx Earlier than V200R006C00 versions has an arbitrary file download vulnerability. An attacker could exploit it to download arbitrary files on a target device to cause information leak.

  • CVE-2017-2734MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.00

    P9 Plus smartphones with software versions earlier before VIE-AL10BC00B386 have a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application on the smart phone, and the application can send given parameter to specific interface,…

  • CVE-2017-2733MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file permission configuration. An attacker tricks a user into installing a malicious application on the smart…

  • CVE-2017-2732MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    Huawei Hilink APP Versions earlier before 5.0.25.306 has an information leak vulnerability. An attacker may trick a user into installing a malicious application and application can access Hilink APP data.

  • CVE-2017-2731MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    The vibrator service in P9 Plus smart phones with software versions earlier before VIE-AL10C00B386 has DoS vulnerability. An attacker can tricks a user into installing a malicious application on the smart phone, and send given parameter to smart phone vibrator service interface…

  • CVE-2017-2711MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    P9 Plus smartphones with software earlier than VIE-AL10C00B352 versions have an input validation vulnerability in the touchscreen Driver. An attacker can tricks a user into installing a malicious application on the smart phone, and send given parameter to smart phone to crash…

  • CVE-2017-2709MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    HiGame with software earlier than 7.3.0 versions, SkyTone with software earlier than 8.1.1 versions have a DoS Vulnerability. An attacker tricks a user into installing a malicious application on the smart phone, the attacker can send malformed packets to the device. Due to the…

  • CVE-2017-2695MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.01

    TIT-AL00C583B211 has a directory traversal vulnerability which allows an attacker to obtain the files in email application.

  • CVE-2017-2690MedNov 22, 2017
    risk 0.36cvss 5.5epss 0.00

    SoftCo with software V200R003C20,eSpace U1910 with software V200R003C00, V200R003C20 and V200R003C30,eSpace U1911 with software V200R003C20, V200R003C30,eSpace U1930 with software V200R003C20 and V200R003C30,eSpace U1960 with software V200R003C20, V200R003C30,eSpace U1980 with…

  • CVE-2015-8223MedApr 13, 2017
    risk 0.36cvss 5.5epss 0.00

    Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B85, and P8 ALE-UL00 before ALE-UL00B211 allows local users to cause a denial of service (OS crash) by leveraging camera permissions and via crafted input to the camera driver.

  • CVE-2015-7740MedApr 13, 2017
    risk 0.36cvss 5.5epss 0.00

    Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B851 and P8 ALE-UL00 before ALE-UL00B211 allows local users to cause a denial of service (OS crash) via vectors involving an application that passes crafted input to the GPU driver.

  • CVE-2016-8758MedApr 2, 2017
    risk 0.36cvss 5.5epss 0.01

    ION memory management module in Huawei Mate8 phones with software NXT-AL10C00B561 and earlier versions, NXT-CL10C00B561 and earlier versions, NXT-DL10C00B561 and earlier versions, NXT-TL10C00B561 and earlier versions allows attackers to cause a denial of service (restart).

  • CVE-2016-8756MedApr 2, 2017
    risk 0.36cvss 5.5epss 0.01

    ION memory management module in Huawei Mate 8 phones with software NXT-AL10C00B197 and earlier versions, NXT-DL10C00B197 and earlier versions, NXT-TL10C00B197 and earlier versions, NXT-CL10C00B197 and earlier versions allows attackers to cause a denial of service (restart).

  • CVE-2015-7847MedApr 2, 2017
    risk 0.36cvss 5.5epss 0.00

    Huawei MBB (Mobile Broadband) product E3272s with software versions earlier than E3272s-153TCPU-V200R002B491D09SP00C00 has a Denial of Service (DoS) vulnerability. An attacker could send a malicious packet to the Common Gateway Interface (CGI) of a target device and make it fail…

  • CVE-2015-8678MedMar 24, 2017
    risk 0.36cvss 5.5epss 0.01

    The ION driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230, GRA-CL10 before GRA-CL10C92B230, GRA-UL00 before GRA-UL00C00B230, and GRA-UL10 before GRA-UL10C00B230 and Mate S smartphones with software CRR-TL00 before…

  • CVE-2016-8279MedSep 26, 2016
    risk 0.36cvss 5.5epss 0.01

    The video driver in Huawei Mate S smartphones with software CRR-TL00 before CRR-TL00C01B362, CRR-UL20 before CRR-UL20C00B362, CRR-CL00 before CRR-CL00C92B362, and CRR-CL20 before CRR-CL20C92B362; P8 smartphones with software GRA-TL00 before GRA-TL00C01B366, GRA-UL00 before…

  • CVE-2016-6900MedSep 7, 2016
    risk 0.36cvss 5.5epss 0.00

    The Intelligent Baseboard Management Controller (iBMC) in Huawei RH1288 V3 servers with software before V100R003C00SPC613; RH2288 V3 servers with software before V100R003C00SPC617; RH2288H V3 servers with software before V100R003C00SPC515; RH5885 V3 servers with software before…

  • CVE-2016-5232MedJun 30, 2016
    risk 0.36cvss 5.5epss 0.01

    Buffer overflow in Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL before NXT-TL00C01B182 allows attackers to cause a denial of service (system crash) via a crafted app.

  • CVE-2016-4005MedJun 13, 2016
    risk 0.36cvss 5.5epss 0.00

    The Huawei Hilink App application before 3.19.2 for Android does not validate SSL certificates, which allows local users to have unspecified impact via unknown vectors, aka HWPSIRT-2016-03008.

  • CVE-2016-1496MedApr 13, 2016
    risk 0.36cvss 5.5epss 0.01

    The graphics driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230, GRA-CL10 before GRA-CL10C92B230, GRA-UL00 before GRA-UL00C00B230, and GRA-UL10 before GRA-UL10C00B230 allows attackers to cause a denial of service…

  • CVE-2015-8679MedApr 7, 2016
    risk 0.36cvss 5.5epss 0.01

    The Maxim_smartpa_dev driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230, GRA-CL10 before GRA-CL10C92B230, GRA-UL00 before GRA-UL00C00B230, and GRA-UL10 before GRA-UL10C00B230 and Mate S smartphones with software…

  • CVE-2015-8305MedApr 7, 2016
    risk 0.36cvss 5.5epss 0.01

    Huawei Sophia-L10 smartphones with software before P7-L10C900B852 allow attackers to cause a denial of service (system panic) via a crafted application with the system or camera privilege.

  • CVE-2015-8337MedJan 12, 2016
    risk 0.36cvss 5.5epss 0.01

    The HIFI driver in Huawei P8 phones with software GRA-TL00 before GRA-TL00C01B220SP01, GRA-CL00 before GRA-CL00C92B220, GRA-CL10 before GRA-CL10C92B220, GRA-UL00 before GRA-UL00C00B220, GRA-UL10 before GRA-UL10C00B220 and Mate7 phones with software MT7-UL00 before…

  • CVE-2015-8226MedJan 8, 2016
    risk 0.36cvss 5.5epss 0.01

    The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100R001C233B111 allows remote attackers to cause a denial of service (crash) via a…

  • CVE-2015-8225MedJan 8, 2016
    risk 0.36cvss 5.5epss 0.01

    The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100R001C233B111 allows remote attackers to cause a denial of service (crash) via a…

  • CVE-2026-41972MedJun 9, 2026
    risk 0.35cvss 5.4epss 0.00

    Path traversal vulnerability in the SMS app. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-54648MedAug 6, 2025
    risk 0.35cvss 5.4epss 0.00

    Out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-54647MedAug 6, 2025
    risk 0.35cvss 5.4epss 0.00

    Out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-54610MedAug 6, 2025
    risk 0.35cvss 5.4epss 0.00

    Out-of-bounds access vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-54609MedAug 6, 2025
    risk 0.35cvss 5.4epss 0.00

    Out-of-bounds access vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2018-7935MedFeb 10, 2023
    risk 0.35cvss 5.3epss 0.01

    There is a vulnerability in 21.328.01.00.00 version of the E5573Cs-322. Remote attackers could exploit this vulnerability to make the network where the E5573Cs-322 is running temporarily unavailable.

  • CVE-2021-40009MedJan 10, 2022
    risk 0.35cvss 5.3epss 0.01

    There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.

  • CVE-2021-40003MedJan 10, 2022
    risk 0.35cvss 5.3epss 0.01

    HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

  • CVE-2021-40001MedJan 10, 2022
    risk 0.35cvss 5.3epss 0.01

    The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTime application to be unavailable.

  • CVE-2021-37032MedNov 23, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a Bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause Digital Balance to fail to work.

  • CVE-2021-37029MedNov 23, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an Identity verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.

  • CVE-2021-37013MedNov 23, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the availability of users is affected.

  • CVE-2021-22410MedNov 23, 2021
    risk 0.35cvss 5.4epss 0.00

    There is a XSS injection vulnerability in iMaster NCE-Fabric V100R019C10. A module of the client does not verify the input sufficiently. Attackers can exploit this vulnerability by modifying input after logging onto the client. This may compromise the normal service of the…

  • CVE-2021-36997MedOct 28, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a Low memory error in Huawei Smartphone due to the unlimited size of images to be parsed.Successful exploitation of this vulnerability may cause the Gallery or Files app to exit unexpectedly.

  • CVE-2021-22404MedOct 28, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a Directory traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2021-22344MedJul 1, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause temporary DoS.

  • CVE-2021-22347MedJul 1, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause temporary DoS.

  • CVE-2021-22338MedJun 29, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an XXE injection vulnerability in eCNS280 V100R005C00 and V100R005C10. A module does not perform the strict operation to the input XML message. Attacker can send specific message to exploit this vulnerability, leading to the module denial of service.

  • CVE-2021-22337MedJun 3, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause leaking of user click data.

  • CVE-2021-22362MedMay 27, 2021
    risk 0.35cvss 5.3epss 0.01

    There is an out of bounds write vulnerability in some Huawei products. An attacker can exploit this vulnerability by sending crafted data in the packet to the target device. Due to insufficient validation of message, successful exploit can cause certain service abnormal.Affected…

  • CVE-2021-22321MedMar 22, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a use-after-free vulnerability in a Huawei product. A module cannot deal with specific operations in special scenarios. Attackers can exploit this vulnerability by performing malicious operations. This can cause memory use-after-free, compromising normal service.…

Page 37 of 48