Vulnerabilities > Huawei

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-8191 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Huawei Fusionsphere Openstack V100R006C00Spc102(Nfv)
FusionSphere OpenStack V100R006C00SPC102(NFV)has a week cryptographic algorithm vulnerability.
network
high complexity
huawei CWE-327
5.9
2017-11-22 CVE-2017-8190 Improper Verification of Cryptographic Signature vulnerability in Huawei Fusionsphere Openstack V100R006C00Spc102(Nfv)
FusionSphere OpenStack V100R006C00SPC102(NFV)has an improper verification of cryptographic signature vulnerability.
local
low complexity
huawei CWE-347
6.7
2017-11-22 CVE-2017-8189 Path Traversal vulnerability in Huawei Fusionsphere Openstack V100R006C00Spc102(Nfv)
FusionSphere OpenStack V100R006C00SPC102(NFV)has a path traversal vulnerability.
local
low complexity
huawei CWE-22
6.0
2017-11-22 CVE-2017-8188 Command Injection vulnerability in Huawei Fusionsphere Openstack V100R006C00Spc102(Nfv)
FusionSphere OpenStack V100R006C00SPC102(NFV)has a command injection vulnerability.
network
low complexity
huawei CWE-77
7.2
2017-11-22 CVE-2017-8186 Improper Input Validation vulnerability in Huawei Mha-Al00A
The Bastet of some Huawei mobile phones with software of earlier than MHA-AL00BC00B231 versions has a DOS vulnerability due to the lack of parameter validation.
local
low complexity
huawei CWE-20
5.5
2017-11-22 CVE-2017-8185 Exposure of Resource to Wrong Sphere vulnerability in Huawei Me906S-158 Firmware
ME906s-158 earlier than ME906S_Installer_13.1805.10.3 versions has a privilege elevation vulnerability.
local
low complexity
huawei CWE-668
7.8
2017-11-22 CVE-2017-8184 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei MTK Platform Smart Phone Firmware Niceal00C00B155/Niceal00C00B160
MTK platform in Huawei smart phones with software of earlier than Nice-AL00C00B160 versions, earlier than Nice-AL10C00B140 versions has a any memory access vulnerability.
local
low complexity
huawei CWE-119
5.5
2017-11-22 CVE-2017-8183 Information Exposure vulnerability in Huawei MTK Platform Smart Phone Firmware Niceal00C00B155/Niceal00C00B160
MTK platform in Huawei smart phones with software of earlier than Nice-AL00C00B160 versions, earlier than Nice-AL10C00B140 versions has a any memory access vulnerability.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-8182 Out-of-bounds Read vulnerability in Huawei MTK Platform Smart Phone Firmware Niceal00C00B155/Niceal00C00B160
MTK platform in Huawei smart phones with software of earlier than Nice-AL00C00B160 versions, earlier than Nice-AL10C00B140 versions has a out-of-bound read vulnerability.
local
low complexity
huawei CWE-125
6.1
2017-11-22 CVE-2017-8181 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei MTK Platform Smart Phone Firmware
The camera driver of MTK platform in Huawei smart phones with software of versions earlier than Nice-AL00C00B155 has a arbitrary memory write vulnerability.Due to the insufficient input verification, an attacker tricks a user into installing a malicious application which has special privilege and sends a specific parameter to the driver of the smart phone, causing privilege escalation.
local
low complexity
huawei CWE-119
7.8