Vulnerabilities > Huawei > Harmonyos > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-10-11 CVE-2023-44116 Missing Authentication for Critical Function vulnerability in Huawei Emui and Harmonyos
Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
network
low complexity
huawei CWE-306
critical
9.8
2023-10-11 CVE-2023-44107 Unspecified vulnerability in Huawei Harmonyos 2.1.0
Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of this vulnerability may affect service availability and integrity.
network
low complexity
huawei
critical
9.1
2023-10-11 CVE-2023-44105 Improper Privilege Management vulnerability in Huawei Emui and Harmonyos
Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally.
network
low complexity
huawei CWE-269
critical
9.8
2023-10-11 CVE-2023-44106 Unspecified vulnerability in Huawei Emui and Harmonyos
API permission management vulnerability in the Fwk-Display module.Successful exploitation of this vulnerability may cause features to perform abnormally.
network
low complexity
huawei
critical
9.8
2023-09-25 CVE-2022-48605 Unspecified vulnerability in Huawei Emui and Harmonyos
Input verification vulnerability in the fingerprint module.
network
low complexity
huawei
critical
9.8
2023-09-25 CVE-2023-41297 Unspecified vulnerability in Huawei Emui and Harmonyos
Vulnerability of defects introduced in the design process in the HiviewTunner module.
network
low complexity
huawei
critical
9.8
2023-09-25 CVE-2023-41296 Missing Authorization vulnerability in Huawei Emui and Harmonyos
Vulnerability of missing authorization in the kernel module.
network
low complexity
huawei CWE-862
critical
9.1
2023-09-25 CVE-2023-41294 Unspecified vulnerability in Huawei Harmonyos 2.1.0
The DP module has a service hijacking vulnerability.Successful exploitation of this vulnerability may affect some Super Device services.
network
low complexity
huawei
critical
9.8
2023-09-25 CVE-2023-39407 Path Traversal vulnerability in Huawei Harmonyos 2.0.0
The Watchkit has a risk of unauthorized file access.Successful exploitation of this vulnerability may affect confidentiality and integrity.
network
low complexity
huawei CWE-22
critical
9.1
2023-08-13 CVE-2023-39403 Unspecified vulnerability in Huawei Emui and Harmonyos
Parameter verification vulnerability in the installd module.
network
low complexity
huawei
critical
9.1