VYPR

Vendor CVEs

Huawei

All CVEs

2,386 total · sorted by risk
  • CVE-2022-44560MedNov 9, 2022
    risk 0.34cvss 5.3epss 0.00

    The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified.

  • CVE-2022-44553MedNov 9, 2022
    risk 0.34cvss 5.3epss 0.00

    The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically.

  • CVE-2022-41587MedOct 14, 2022
    risk 0.34cvss 5.3epss 0.00

    Uncaptured exceptions in the home screen module. Successful exploitation of this vulnerability may affect stability.

  • CVE-2021-46811MedJun 13, 2022
    risk 0.34cvss 5.3epss 0.00

    HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information.

  • CVE-2021-46785MedMay 13, 2022
    risk 0.34cvss 5.3epss 0.01

    The Property module has a vulnerability in permission control.This vulnerability can be exploited to obtain the unique device identifier.

  • CVE-2021-39981MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.00

    Chang Lian application has a vulnerability which can be maliciously exploited to hide the calling number.Successful exploitation of this vulnerability allows you to make an anonymous call.

  • CVE-2021-39980MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.01

    Telephony application has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability.Successful exploitation of this vulnerability could lead to sensitive information disclosure.

  • CVE-2021-37132MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.01

    PackageManagerService has a Permissions, Privileges, and Access Controls vulnerability .Successful exploitation of this vulnerability may cause that Third-party apps can obtain the complete list of Harmony apps without permission.

  • CVE-2021-37118MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.01

    The HwNearbyMain module has a Improper Handling of Exceptional Conditions vulnerability.Successful exploitation of this vulnerability may lead to message leak.

  • CVE-2021-37114MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.01

    There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2021-37112MedJan 3, 2022
    risk 0.34cvss 5.3epss 0.00

    Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.

  • CVE-2021-37093MedDec 8, 2021
    risk 0.34cvss 5.3epss 0.01

    There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.

  • CVE-2021-37058MedDec 7, 2021
    risk 0.34cvss 5.3epss 0.00

    There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user's nickname is maliciously tampered with.

  • CVE-2021-37056MedDec 7, 2021
    risk 0.34cvss 5.3epss 0.01

    There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.

  • CVE-2021-37055MedDec 7, 2021
    risk 0.34cvss 5.3epss 0.01

    There is a Logic bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.

  • CVE-2021-36998MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.01

    There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to read an array that is out of bounds.

  • CVE-2021-36996MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.01

    There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of certain virtual information.

  • CVE-2021-22490MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.01

    There is a Permission verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect the device performance.

  • CVE-2021-22482MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.00

    There is an Uninitialized variable vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of invalid data.

  • CVE-2021-22475MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.01

    There is an Improper permission management vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2021-22407MedOct 28, 2021
    risk 0.34cvss 5.3epss 0.01

    There is a Configuration defects in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2021-22346MedJun 30, 2021
    risk 0.34cvss 5.3epss 0.01

    There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to the disclosure of user habits.

  • CVE-2021-22378MedJun 22, 2021
    risk 0.34cvss 5.3epss 0.00

    There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful exploit may cause the affected device abnormal.

  • CVE-2021-22325MedJun 3, 2021
    risk 0.34cvss 5.3epss 0.00

    There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may result in video streams being intercepted during transmission.

  • CVE-2021-22409MedMay 20, 2021
    risk 0.34cvss 5.3epss 0.00

    There is a denial of service vulnerability in some versions of ManageOne. There is a logic error in the implementation of a function of a module. When the service pressure is heavy, there is a low probability that an exception may occur. Successful exploit may cause some…

  • CVE-2020-1836MedJul 6, 2020
    risk 0.34cvss 5.3epss 0.00

    HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) and HUAWEI P30 Pro with versions earlier than 10.1.0.160(C00E160R2P8) have an information disclosure vulnerability. Certain function's default configuration in the system seems insecure, an attacker should craft a…

  • CVE-2020-1837MedJul 6, 2020
    risk 0.34cvss 5.3epss 0.00

    ChangXiang 8 Plus with versions earlier than 9.1.0.136(C00E121R1P6T8) have a denial of service vulnerability. The device does not properly handle certain message from base station, the attacker could craft a fake base station to launch the attack. Successful exploit could cause…

  • CVE-2019-5303MedApr 27, 2020
    risk 0.34cvss 5.3epss 0.00

    There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices. Due to insufficient input validation of two values when parsing the messages, successful…

  • CVE-2019-5302MedApr 27, 2020
    risk 0.34cvss 5.3epss 0.00

    There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices. Due to insufficient input validation of two values when parsing the messages, successful…

  • CVE-2020-1803MedApr 20, 2020
    risk 0.34cvss 5.3epss 0.00

    Huawei smartphones Honor V20 with versions earlier than 10.0.0.179(C636E3R4P3),versions earlier than 10.0.0.180(C185E3R3P3),versions earlier than 10.0.0.180(C432E10R3P4) have an information disclosure vulnerability. The device does not sufficiently validate the identity of smart…

  • CVE-2020-1814MedFeb 18, 2020
    risk 0.34cvss 5.3epss 0.00

    Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, and V500R005C00 have a Dangling pointer dereference vulnerability. An authenticated attacker may do some…

  • CVE-2020-1810MedJan 9, 2020
    risk 0.34cvss 5.3epss 0.00

    There is a weak algorithm vulnerability in some Huawei products. The affected products use the RSA algorithm in the SSL key exchange algorithm which have been considered as a weak algorithm. Attackers may exploit this vulnerability to leak some information.

  • CVE-2019-5245MedJun 13, 2019
    risk 0.34cvss 5.3epss 0.00

    HiSuite 9.1.0.300 versions and earlier contains a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing that could execute arbitrary code.

  • CVE-2017-8154MedApr 11, 2018
    risk 0.34cvss 5.3epss 0.00

    The Themes App Honor 8 Lite Huawei mobile phones with software of versions before Prague-L31C576B172, versions before Prague-L31C530B160, versions before Prague-L31C432B180 has a man-in-the-middle (MITM) vulnerability due to the use of the insecure HTTP protocol for theme…

  • CVE-2017-15345MedFeb 15, 2018
    risk 0.34cvss 5.3epss 0.00

    Huawei Smartphones with software LON-L29DC721B186 have a denial of service vulnerability. An attacker could make an loop exit condition that cannot be reached by sending the crafted 3GPP message. Successful exploit could cause the device to reboot.

  • CVE-2017-8213MedNov 22, 2017
    risk 0.34cvss 5.3epss 0.01

    Huawei SMC2.0 with software of V100R003C10, V100R005C00SPC100, V100R005C00SPC101B001T, V100R005C00SPC102, V100R005C00SPC103, V100R005C00SPC200, V100R005C00SPC201T, V500R002C00, V600R006C00 has an input validation vulnerability when handle TLS and DTLS handshake with certificate.…

  • CVE-2017-8177MedNov 22, 2017
    risk 0.34cvss 5.3epss 0.00

    Huawei APP HiWallet earlier than 5.0.3.100 versions do not support signature verification for APK file. An attacker could exploit this vulnerability to hijack the APK and upload modified APK file. Successful exploit could lead to the APP is hijacking.

  • CVE-2016-8272MedApr 2, 2017
    risk 0.34cvss 5.3epss 0.00

    Huawei PC client software HiSuite 4.0.5.300_OVE has an information leak vulnerability; an attacker who can log in to the system can copy out the user's proxy password, causing information leaks.

  • CVE-2016-8271MedApr 2, 2017
    risk 0.34cvss 5.3epss 0.01

    Huawei eSpace IAD V300R002C01SPC100 and earlier versions have an information leak vulnerability; an attacker can check and download the fault information by accessing a special URL.

  • CVE-2014-8570MedApr 2, 2017
    risk 0.34cvss 5.3epss 0.01

    Huawei S9300, S9303, S9306, S9312 with software V100R002; S7700, S7703, S7706, S7712 with software V100R003, V100R006, V200R001, V200R002, V200R003, V200R005; S9300E, S9303E, S9306E, S9312E with software V200R001; S9700, S9703, S9706, S9712 with software V200R002, V200R003,…

  • CVE-2016-4086MedJun 30, 2016
    risk 0.34cvss 5.3epss 0.00

    Huawei HiSuite (In China) before 4.0.4.301 and (Out of China) before 4.0.4.204_ove allows remote attackers to install arbitrary apps on a connected phone via unspecified vectors.

  • CVE-2026-49303MedAug 17, 2026
    risk 0.33cvss 5.1epss 0.00

    Permission control vulnerability in the notification module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2026-34866MedApr 13, 2026
    risk 0.33cvss 5.1epss 0.00

    Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

  • CVE-2026-28537MedMar 5, 2026
    risk 0.33cvss 5.1epss 0.00

    Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-68966MedJan 14, 2026
    risk 0.33cvss 5.1epss 0.00

    Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

  • CVE-2025-68962MedJan 14, 2026
    risk 0.33cvss 5.1epss 0.00

    Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-68961MedJan 14, 2026
    risk 0.33cvss 5.1epss 0.00

    Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-66322MedDec 8, 2025
    risk 0.33cvss 5.1epss 0.00

    Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-66321MedDec 8, 2025
    risk 0.33cvss 5.1epss 0.00

    Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2025-66320MedDec 8, 2025
    risk 0.33cvss 5.1epss 0.00

    Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability.

Page 40 of 48