Vendor CVEs
Huawei
All CVEs
2,386 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2015-7846 | Med | 0.30 | 4.6 | 0.00 | Sep 25, 2017 | Huawei S7700, S9700, S9300 before V200R07C00SPC500, and AR200, AR1200, AR2200, AR3200 before V200R005C20SPC200 allows attackers with physical access to the CF card to obtain sensitive information. | ||
| CVE-2016-8776 | Med | 0.30 | 4.6 | 0.00 | Apr 2, 2017 | Huawei P9 phones with software EVA-AL10C00,EVA-CL10C00,EVA-DL10C00,EVA-TL10C00 and P9 Lite phones with software VNS-L21C185 allow attackers to bypass the factory reset protection (FRP) to enter some functional modules without authorization and perform operations to update the… | ||
| CVE-2015-2808 | Low | 0.30 | 3.7 | 0.74 | Apr 1, 2015 | The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing… | ||
| CVE-2026-28543 | Med | 0.29 | 4.4 | 0.00 | Mar 5, 2026 | Race condition vulnerability in the maintenance and diagnostics module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-58279 | Med | 0.29 | 4.4 | 0.00 | Dec 8, 2025 | Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-64315 | Med | 0.29 | 4.4 | 0.00 | Nov 28, 2025 | Configuration defect vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect app data confidentiality and integrity. | ||
| CVE-2024-58256 | Med | 0.29 | 4.5 | 0.00 | Aug 8, 2025 | EnzoH has an OS command injection vulnerability. Successful exploitation of this vulnerability may lead to arbitrary command execution. | ||
| CVE-2025-54649 | Med | 0.29 | 4.5 | 0.00 | Aug 6, 2025 | Vulnerability of using incompatible types to access resources in the location service. Impact: Successful exploitation of this vulnerability may cause some location information attributes to be incorrect. | ||
| CVE-2025-54637 | Med | 0.29 | 4.4 | 0.00 | Aug 6, 2025 | Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-54636 | Med | 0.29 | 4.4 | 0.00 | Aug 6, 2025 | Issue of buffer overflow caused by insufficient data verification in the kernel drop detection module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-54626 | Med | 0.29 | 4.4 | 0.00 | Aug 6, 2025 | Pointer dangling vulnerability in the cjwindow module. Impact: Successful exploitation of this vulnerability may affect function stability. | ||
| CVE-2025-48904 | Med | 0.29 | 4.4 | 0.00 | Jun 6, 2025 | Vulnerability that cards can call unauthorized APIs in the FRS process Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46592 | Med | 0.29 | 4.4 | 0.00 | May 6, 2025 | Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2025-46589 | Med | 0.29 | 4.4 | 0.00 | May 6, 2025 | Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. | ||
| CVE-2025-46588 | Med | 0.29 | 4.4 | 0.00 | May 6, 2025 | Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. | ||
| CVE-2023-52954 | Med | 0.29 | 4.4 | 0.00 | Jan 8, 2025 | Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-56434 | Med | 0.29 | 4.4 | 0.00 | Jan 8, 2025 | UAF vulnerability in the device node access module Impact: Successful exploitation of this vulnerability may cause service exceptions of the device. | ||
| CVE-2024-54114 | Med | 0.29 | 4.4 | 0.00 | Dec 12, 2024 | Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2024-47294 | Med | 0.29 | 4.4 | 0.00 | Sep 27, 2024 | Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-45447 | Med | 0.29 | 4.4 | 0.00 | Sep 4, 2024 | Access control vulnerability in the camera framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-42032 | Med | 0.29 | 4.4 | 0.00 | Aug 8, 2024 | Access permission verification vulnerability in the Contacts module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52106 | Med | 0.29 | 4.4 | 0.00 | Jan 16, 2024 | Vulnerability of permission verification for APIs in the DownloadProviderMain module. Impact: Successful exploitation of this vulnerability will affect integrity and availability. | ||
| CVE-2021-22310 | Med | 0.29 | 4.4 | 0.00 | Mar 22, 2021 | There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an information leak. Affected… | ||
| CVE-2020-9202 | Med | 0.29 | 4.4 | 0.00 | Dec 24, 2020 | There is an information disclosure vulnerability in TE Mobile software versions V600R006C10,V600R006C10SPC100. Due to the improper storage of some information in certain specific scenario, the attacker can gain information in the victim's device to launch the attack, successful… | ||
| CVE-2020-9128 | Med | 0.29 | 4.4 | 0.00 | Nov 12, 2020 | FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak. | ||
| CVE-2020-9111 | Med | 0.29 | 4.5 | 0.00 | Oct 19, 2020 | E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the events continually,… | ||
| CVE-2020-9229 | Med | 0.29 | 4.4 | 0.00 | Aug 14, 2020 | FusionCompute 8.0.0 has an information disclosure vulnerability. Due to the properly protection of certain information, attackers may exploit this vulnerability to obtain certain information. | ||
| CVE-2020-1877 | Med | 0.29 | 4.4 | 0.00 | Feb 28, 2020 | NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in to the device and performs some operations. Successful… | ||
| CVE-2020-1861 | Med | 0.29 | 4.4 | 0.00 | Feb 28, 2020 | CloudEngine 12800 with versions of V200R001C00SPC600,V200R001C00SPC700,V200R002C01,V200R002C50SPC800,V200R002C50SPC800PWE,V200R003C00SPC810,V200R003C00SPC810PWE,V200R005C00SPC600,V200R005C00SPC800,V200R005C00SPC800PWE,V200R005C10,V200R005C10SPC300 have an information leakage… | ||
| CVE-2020-1826 | Med | 0.29 | 4.4 | 0.00 | Jan 9, 2020 | Huawei Honor Magic2 mobile phones with versions earlier than 10.0.0.175(C00E59R2P11) have an information leak vulnerability. Due to a module using weak encryption tool, an attacker with the root permission may exploit the vulnerability to obtain some information. | ||
| CVE-2018-7901 | Med | 0.29 | 4.4 | 0.00 | Apr 30, 2018 | RCS module in Huawei ALP-AL00B smart phones with software versions earlier than 8.0.0.129, BLA-AL00B smart phones with software versions earlier than 8.0.0.129 has a remote control vulnerability. An attacker can trick a user to install a malicious application. When the… | ||
| CVE-2026-41983 | Med | 0.28 | 4.3 | 0.00 | Jun 9, 2026 | Null pointer dereference vulnerability in the browser module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-56445 | Med | 0.28 | 4.3 | 0.00 | Jan 8, 2025 | Instruction authentication bypass vulnerability in the Findnetwork module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2020-9086 | Med | 0.28 | 4.3 | 0.00 | Dec 27, 2024 | There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may send special UPNP message to the affected products. Due to insufficient input validation of some value, successful exploit may cause some service abnormal. (Vulnerability ID:… | ||
| CVE-2024-54116 | Med | 0.28 | 4.3 | 0.00 | Dec 12, 2024 | Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2024-54115 | Med | 0.28 | 4.3 | 0.00 | Dec 12, 2024 | Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2024-42039 | Med | 0.28 | 4.3 | 0.00 | Sep 4, 2024 | Access control vulnerability in the SystemUI module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52544 | Med | 0.28 | 4.3 | 0.00 | Apr 8, 2024 | Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-52380 | Med | 0.28 | 4.3 | 0.00 | Feb 18, 2024 | Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44110 | Med | 0.28 | 4.3 | 0.00 | Oct 11, 2023 | Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2022-44548 | Med | 0.28 | 4.3 | 0.00 | Nov 9, 2022 | There is a vulnerability in permission verification during the Bluetooth pairing process. Successful exploitation of this vulnerability may cause the dialog box for confirming the pairing not to be displayed during Bluetooth pairing. | ||
| CVE-2021-46835 | Med | 0.28 | 4.3 | 0.00 | Sep 20, 2022 | There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijacked by attackers. | ||
| CVE-2021-22358 | Med | 0.28 | 4.3 | 0.01 | May 27, 2021 | There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insufficient, an attacker can exploit this vulnerability to upload any files to the device. Successful exploit may cause the service abnormal. | ||
| CVE-2020-9104 | Med | 0.28 | 4.3 | 0.00 | Aug 21, 2020 | HUAWEI P30 smartphones with Versions earlier than 10.1.0.123(C431E22R2P5),Versions earlier than 10.1.0.123(C432E22R2P5),Versions earlier than 10.1.0.126(C10E7R5P1),Versions earlier than 10.1.0.126(C185E4R7P1),Versions earlier than 10.1.0.126(C461E7R3P1),Versions earlier than… | ||
| CVE-2019-5243 | Med | 0.28 | 4.3 | 0.01 | Jun 10, 2019 | There is a Clickjacking vulnerability in Huawei HG255s product. An attacker may trick user to click a link and affect the integrity of a device by exploiting this vulnerability. | ||
| CVE-2018-7946 | Med | 0.28 | 4.3 | 0.00 | Nov 27, 2018 | There is an information leak vulnerability in some Huawei smartphones. An attacker may do some specific configuration in the smartphone and trick a user into inputting some sensitive information. Due to improper design, successful exploit may cause some information leak. | ||
| CVE-2018-7931 | Med | 0.28 | 4.3 | 0.01 | Apr 24, 2018 | Huawei AppGallery versions before 8.0.4.301 has a whitelist mechanism bypass vulnerability. An attacker may set up a malicious network environment and trick user into accessing a malicious web page to bypass the whitelist mechanism. | ||
| CVE-2017-15327 | Med | 0.28 | 4.3 | 0.00 | Apr 11, 2018 | S12700 V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R007C20, V200R008C00, V200R008C06, V200R009C00, V200R010C00, S7700 V200R001C00, V200R001C01, V200R002C00, V200R003C00, V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R008C00,… | ||
| CVE-2017-15326 | Med | 0.28 | 4.3 | 0.00 | Mar 23, 2018 | DBS3900 TDD LTE V100R003C00, V100R004C10 have a weak encryption algorithm security vulnerability. DBS3900 TDD LTE supports SSL/TLS protocol negotiation using insecure encryption algorithms. If an insecure encryption algorithm is negotiated in the communication, an… | ||
| CVE-2016-8785 | Med | 0.28 | 4.3 | 0.01 | Mar 9, 2018 | Huawei S12700 V200R007C00, V200R008C00, S5700 V200R007C00, S7700 V200R002C00, V200R005C00, V200R006C00, V200R007C00, V200R008C00, S9700 V200R007C00 have an input validation vulnerability. Due to the lack of input validation, an attacker may craft a malformed packet and send it… |
- risk 0.30cvss 4.6epss 0.00
Huawei S7700, S9700, S9300 before V200R07C00SPC500, and AR200, AR1200, AR2200, AR3200 before V200R005C20SPC200 allows attackers with physical access to the CF card to obtain sensitive information.
- risk 0.30cvss 4.6epss 0.00
Huawei P9 phones with software EVA-AL10C00,EVA-CL10C00,EVA-DL10C00,EVA-TL10C00 and P9 Lite phones with software VNS-L21C185 allow attackers to bypass the factory reset protection (FRP) to enter some functional modules without authorization and perform operations to update the…
- risk 0.30cvss 3.7epss 0.74
The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing…
- risk 0.29cvss 4.4epss 0.00
Race condition vulnerability in the maintenance and diagnostics module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.29cvss 4.4epss 0.00
Configuration defect vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect app data confidentiality and integrity.
- risk 0.29cvss 4.5epss 0.00
EnzoH has an OS command injection vulnerability. Successful exploitation of this vulnerability may lead to arbitrary command execution.
- risk 0.29cvss 4.5epss 0.00
Vulnerability of using incompatible types to access resources in the location service. Impact: Successful exploitation of this vulnerability may cause some location information attributes to be incorrect.
- risk 0.29cvss 4.4epss 0.00
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.29cvss 4.4epss 0.00
Issue of buffer overflow caused by insufficient data verification in the kernel drop detection module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
Pointer dangling vulnerability in the cjwindow module. Impact: Successful exploitation of this vulnerability may affect function stability.
- risk 0.29cvss 4.4epss 0.00
Vulnerability that cards can call unauthorized APIs in the FRS process Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
- risk 0.29cvss 4.4epss 0.00
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
- risk 0.29cvss 4.4epss 0.00
Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
UAF vulnerability in the device node access module Impact: Successful exploitation of this vulnerability may cause service exceptions of the device.
- risk 0.29cvss 4.4epss 0.00
Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.29cvss 4.4epss 0.00
Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.29cvss 4.4epss 0.00
Access control vulnerability in the camera framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.29cvss 4.4epss 0.00
Access permission verification vulnerability in the Contacts module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.29cvss 4.4epss 0.00
Vulnerability of permission verification for APIs in the DownloadProviderMain module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.
- risk 0.29cvss 4.4epss 0.00
There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an information leak. Affected…
- risk 0.29cvss 4.4epss 0.00
There is an information disclosure vulnerability in TE Mobile software versions V600R006C10,V600R006C10SPC100. Due to the improper storage of some information in certain specific scenario, the attacker can gain information in the victim's device to launch the attack, successful…
- risk 0.29cvss 4.4epss 0.00
FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak.
- risk 0.29cvss 4.5epss 0.00
E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the events continually,…
- risk 0.29cvss 4.4epss 0.00
FusionCompute 8.0.0 has an information disclosure vulnerability. Due to the properly protection of certain information, attackers may exploit this vulnerability to obtain certain information.
- risk 0.29cvss 4.4epss 0.00
NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in to the device and performs some operations. Successful…
- risk 0.29cvss 4.4epss 0.00
CloudEngine 12800 with versions of V200R001C00SPC600,V200R001C00SPC700,V200R002C01,V200R002C50SPC800,V200R002C50SPC800PWE,V200R003C00SPC810,V200R003C00SPC810PWE,V200R005C00SPC600,V200R005C00SPC800,V200R005C00SPC800PWE,V200R005C10,V200R005C10SPC300 have an information leakage…
- risk 0.29cvss 4.4epss 0.00
Huawei Honor Magic2 mobile phones with versions earlier than 10.0.0.175(C00E59R2P11) have an information leak vulnerability. Due to a module using weak encryption tool, an attacker with the root permission may exploit the vulnerability to obtain some information.
- risk 0.29cvss 4.4epss 0.00
RCS module in Huawei ALP-AL00B smart phones with software versions earlier than 8.0.0.129, BLA-AL00B smart phones with software versions earlier than 8.0.0.129 has a remote control vulnerability. An attacker can trick a user to install a malicious application. When the…
- risk 0.28cvss 4.3epss 0.00
Null pointer dereference vulnerability in the browser module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.28cvss 4.3epss 0.00
Instruction authentication bypass vulnerability in the Findnetwork module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.28cvss 4.3epss 0.00
There is a buffer error vulnerability in some Huawei product. An unauthenticated attacker may send special UPNP message to the affected products. Due to insufficient input validation of some value, successful exploit may cause some service abnormal. (Vulnerability ID:…
- risk 0.28cvss 4.3epss 0.00
Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.28cvss 4.3epss 0.00
Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.28cvss 4.3epss 0.00
Access control vulnerability in the SystemUI module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.28cvss 4.3epss 0.00
Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.28cvss 4.3epss 0.00
Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.28cvss 4.3epss 0.00
Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availability.
- risk 0.28cvss 4.3epss 0.00
There is a vulnerability in permission verification during the Bluetooth pairing process. Successful exploitation of this vulnerability may cause the dialog box for confirming the pairing not to be displayed during Bluetooth pairing.
- risk 0.28cvss 4.3epss 0.00
There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijacked by attackers.
- risk 0.28cvss 4.3epss 0.01
There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insufficient, an attacker can exploit this vulnerability to upload any files to the device. Successful exploit may cause the service abnormal.
- risk 0.28cvss 4.3epss 0.00
HUAWEI P30 smartphones with Versions earlier than 10.1.0.123(C431E22R2P5),Versions earlier than 10.1.0.123(C432E22R2P5),Versions earlier than 10.1.0.126(C10E7R5P1),Versions earlier than 10.1.0.126(C185E4R7P1),Versions earlier than 10.1.0.126(C461E7R3P1),Versions earlier than…
- risk 0.28cvss 4.3epss 0.01
There is a Clickjacking vulnerability in Huawei HG255s product. An attacker may trick user to click a link and affect the integrity of a device by exploiting this vulnerability.
- risk 0.28cvss 4.3epss 0.00
There is an information leak vulnerability in some Huawei smartphones. An attacker may do some specific configuration in the smartphone and trick a user into inputting some sensitive information. Due to improper design, successful exploit may cause some information leak.
- risk 0.28cvss 4.3epss 0.01
Huawei AppGallery versions before 8.0.4.301 has a whitelist mechanism bypass vulnerability. An attacker may set up a malicious network environment and trick user into accessing a malicious web page to bypass the whitelist mechanism.
- risk 0.28cvss 4.3epss 0.00
S12700 V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R007C20, V200R008C00, V200R008C06, V200R009C00, V200R010C00, S7700 V200R001C00, V200R001C01, V200R002C00, V200R003C00, V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R008C00,…
- risk 0.28cvss 4.3epss 0.00
DBS3900 TDD LTE V100R003C00, V100R004C10 have a weak encryption algorithm security vulnerability. DBS3900 TDD LTE supports SSL/TLS protocol negotiation using insecure encryption algorithms. If an insecure encryption algorithm is negotiated in the communication, an…
- risk 0.28cvss 4.3epss 0.01
Huawei S12700 V200R007C00, V200R008C00, S5700 V200R007C00, S7700 V200R002C00, V200R005C00, V200R006C00, V200R007C00, V200R008C00, S9700 V200R007C00 have an input validation vulnerability. Due to the lack of input validation, an attacker may craft a malformed packet and send it…
Page 43 of 48