Vulnerabilities > Huawei > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-02-25 CVE-2021-22480 Integer Overflow or Wraparound vulnerability in Huawei Harmonyos
The interface of a certain HarmonyOS module has an integer overflow vulnerability.
network
low complexity
huawei CWE-190
critical
9.8
2022-02-25 CVE-2021-40046 Unspecified vulnerability in Huawei Pcmanager 11.1.1.95
PCManager versions 11.1.1.95 has a privilege escalation vulnerability.
network
low complexity
huawei
critical
9.8
2022-02-09 CVE-2021-39994 Unspecified vulnerability in Huawei Emui 12.0.0
There is an arbitrary address access vulnerability with the product line test code.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
network
low complexity
huawei
critical
9.8
2022-02-09 CVE-2021-39997 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Emui 12.0.0
There is a vulnerability of unstrict input parameter verification in the audio assembly.Successful exploitation of this vulnerability may cause out-of-bounds access.
network
low complexity
huawei CWE-119
critical
9.8
2022-01-10 CVE-2021-39993 Integer Overflow or Wraparound vulnerability in Huawei Emui and Magic UI
There is an Integer overflow vulnerability with ACPU in smartphones.
network
low complexity
huawei CWE-190
critical
9.8
2022-01-10 CVE-2021-39996 Out-of-bounds Write vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Heap-based buffer overflow vulnerability with the NFC module in smartphones.
network
low complexity
huawei CWE-787
critical
9.8
2022-01-10 CVE-2021-40010 Out-of-bounds Write vulnerability in Huawei Emui, Harmonyos and Magic UI
The bone voice ID TA has a heap overflow vulnerability.Successful exploitation of this vulnerability may result in malicious code execution.
network
low complexity
huawei CWE-787
critical
9.8
2022-01-03 CVE-2021-37116 Improper Input Validation vulnerability in Huawei Harmonyos
PCManager has a Weaknesses Introduced During Design vulnerability .Successful exploitation of this vulnerability may cause that the PIN of the subscriber is changed.
network
low complexity
huawei CWE-20
critical
9.1
2022-01-03 CVE-2021-37120 Double Free vulnerability in Huawei Emui and Magic UI
There is a Double free vulnerability in Smartphone.Successful exploitation of this vulnerability may cause a kernel crash or privilege escalation.
network
low complexity
huawei CWE-415
critical
9.8
2022-01-03 CVE-2021-37121 Unspecified vulnerability in Huawei Emui and Magic UI
There is a Configuration defects in Smartphone.Successful exploitation of this vulnerability may elevate the MEID (IMEI) permission.
network
low complexity
huawei
critical
9.8