Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2025-46587 Incorrect Default Permissions vulnerability in Huawei Harmonyos 5.0.0
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei CWE-276
5.5
2025-05-06 CVE-2025-46588 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
local
low complexity
huawei
7.7
2025-05-06 CVE-2025-46589 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
local
low complexity
huawei
7.1
2025-05-06 CVE-2025-46590 Improper Authentication vulnerability in Huawei Harmonyos 5.0.0
Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions.
network
low complexity
huawei CWE-287
6.5
2025-05-06 CVE-2025-46591 Out-of-bounds Read vulnerability in Huawei Harmonyos 5.0.0
Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei CWE-125
5.5
2025-05-06 CVE-2025-46592 NULL Pointer Dereference vulnerability in Huawei Harmonyos 5.0.0
Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei CWE-476
5.5
2025-05-06 CVE-2025-46593 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei
5.5
2025-05-06 CVE-2025-4331 SQL Injection vulnerability in Senior-Walter Online Student Clearance System 1.0
A vulnerability classified as critical was found in SourceCodester Online Student Clearance System 1.0.
network
low complexity
senior-walter CWE-89
critical
9.8
2025-05-06 CVE-2025-4332 SQL Injection vulnerability in PHPgurukul Company Visitor Management System 2.0
A vulnerability was found in PHPGurukul Company Visitor Management System 2.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8
2025-05-06 CVE-2025-4340 Command Injection vulnerability in Dlink Dir-806 Firmware and Dir-890L Firmware
A vulnerability classified as critical has been found in D-Link DIR-890L and DIR-806A1 up to 100CNb11/108B03.
network
low complexity
dlink CWE-77
critical
9.8