Vulnerabilities > Huawei

DATE CVE VULNERABILITY TITLE RISK
2023-11-08 CVE-2023-46768 Use After Free vulnerability in Huawei Emui and Harmonyos
Multi-thread vulnerability in the idmap module.
network
low complexity
huawei CWE-416
7.5
2023-11-08 CVE-2023-46769 Use After Free vulnerability in Huawei Emui and Harmonyos
Use-After-Free (UAF) vulnerability in the dubai module.
network
low complexity
huawei CWE-416
7.5
2023-11-08 CVE-2023-46770 Out-of-bounds Write vulnerability in Huawei Emui and Harmonyos
Out-of-bounds vulnerability in the sensor module.
network
low complexity
huawei CWE-787
7.5
2023-11-08 CVE-2023-5801 Authentication Bypass by Spoofing vulnerability in Huawei Emui and Harmonyos
Vulnerability of identity verification being bypassed in the face unlock module.
network
low complexity
huawei CWE-290
critical
9.1
2023-10-11 CVE-2023-44105 Improper Privilege Management vulnerability in Huawei Emui and Harmonyos
Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally.
network
low complexity
huawei CWE-269
critical
9.8
2023-10-11 CVE-2023-44107 Unspecified vulnerability in Huawei Harmonyos 2.1.0
Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of this vulnerability may affect service availability and integrity.
network
low complexity
huawei
critical
9.1
2023-10-11 CVE-2023-44108 Type Confusion vulnerability in Huawei Emui and Harmonyos
Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the device to restart.
network
low complexity
huawei CWE-843
7.5
2023-10-11 CVE-2023-44114 Out-of-bounds Read vulnerability in Huawei Emui and Harmonyos
Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service confidentiality.
network
low complexity
huawei CWE-125
7.5
2023-10-11 CVE-2023-44116 Missing Authentication for Critical Function vulnerability in Huawei Emui and Harmonyos
Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
network
low complexity
huawei CWE-306
critical
9.8
2023-10-11 CVE-2023-44118 Unspecified vulnerability in Huawei Emui and Harmonyos
Vulnerability of undefined permissions in the MeeTime module.Successful exploitation of this vulnerability will affect availability and confidentiality.
network
low complexity
huawei
critical
9.1