Vulnerabilities > Huawei

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-2739 Download of Code Without Integrity Check vulnerability in Huawei Vmall 1.5.2.0
The upgrade package of Huawei Vmall APP Earlier than HwVmall 1.5.3.0 versions is transferred through HTTP.
high complexity
huawei CWE-494
3.1
2017-11-22 CVE-2017-2738 Improper Authentication vulnerability in Huawei Vcm5010 Firmware V100R001C10B010
VCM5010 with software versions earlier before V100R002C50SPC100 has an authentication bypass vulnerability.
network
low complexity
huawei CWE-287
critical
9.8
2017-11-22 CVE-2017-2737 Unrestricted Upload of File with Dangerous Type vulnerability in Huawei Vcm5010 Firmware V100R001C10B010
VCM5010 with software versions earlier before V100R002C50SPC100 has an arbitrary file upload vulnerability.
network
low complexity
huawei CWE-434
8.8
2017-11-22 CVE-2017-2736 Command Injection vulnerability in Huawei Vcm5010 Firmware V100R001C10B010
VCM5010 with software versions earlier before V100R002C50SPC100 has a command injection vulnerability.
network
low complexity
huawei CWE-77
7.2
2017-11-22 CVE-2017-2735 Exposed Dangerous Method or Function vulnerability in Huawei Y6 PRO Firmware 9.1.0.248(C636E5R3P1)
TIT-AL00 smartphones with software versions earlier before TIT-AL00C583B214 have a exposed system interface vulnerability.
local
low complexity
huawei CWE-749
7.1
2017-11-22 CVE-2017-2734 Resource Exhaustion vulnerability in Huawei P9 Plus Firmware
P9 Plus smartphones with software versions earlier before VIE-AL10BC00B386 have a denial of service (DoS) vulnerability.
local
low complexity
huawei CWE-400
5.5
2017-11-22 CVE-2017-2733 Information Exposure vulnerability in Huawei Honor 6X Firmware
Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file permission configuration.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2732 Information Exposure vulnerability in Huawei Hilink
Huawei Hilink APP Versions earlier before 5.0.25.306 has an information leak vulnerability.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2731 Improper Input Validation vulnerability in Huawei P9 Plus Firmware
The vibrator service in P9 Plus smart phones with software versions earlier before VIE-AL10C00B386 has DoS vulnerability.
local
low complexity
huawei CWE-20
5.5
2017-11-22 CVE-2017-2730 Information Exposure vulnerability in Huawei Hilink and Tech Support
HUAWEI HiLink APP (for IOS) versions earlier before 5.0.25.306 and HUAWEI Tech Support APP (for IOS) versions earlier before 5.0.0 have an information leak vulnerability.
low complexity
huawei CWE-200
3.5