Vulnerabilities > Huawei > High

DATE CVE VULNERABILITY TITLE RISK
2021-10-27 CVE-2021-37129 Out-of-bounds Write vulnerability in Huawei products
There is an out of bounds write vulnerability in some Huawei products.
network
low complexity
huawei CWE-787
7.5
2021-10-27 CVE-2021-37130 Path Traversal vulnerability in Huawei Fusioncube Firmware 6.0.2
There is a path traversal vulnerability in Huawei FusionCube 6.0.2.The vulnerability is due to that the software uses external input to construct a pathname that is intended to identify a directory that is located underneath a restricted parent directory, but the software does not properly validate the pathname.
network
low complexity
huawei CWE-22
7.5
2021-09-28 CVE-2021-37104 Server-Side Request Forgery (SSRF) vulnerability in Huawei P40 Firmware 10.1.0.118(C00E116R3P3)
There is a server-side request forgery vulnerability in HUAWEI P40 versions 10.1.0.118(C00E116R3P3).
network
low complexity
huawei CWE-918
7.5
2021-09-28 CVE-2021-37105 Unrestricted Upload of File with Dangerous Type vulnerability in Huawei Fusioncompute 6.5.0/6.5.1/8.0.0
There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0.
network
low complexity
huawei CWE-434
7.5
2021-09-28 CVE-2021-37106 Command Injection vulnerability in Huawei Fusioncompute
There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file.
network
low complexity
huawei CWE-77
7.2
2021-08-23 CVE-2021-22328 Unspecified vulnerability in Huawei products
There is a denial of service vulnerability in some huawei products.
network
low complexity
huawei
7.5
2021-08-23 CVE-2021-22357 Improper Input Validation vulnerability in Huawei products
There is a denial of service vulnerability in Huawei products.
network
low complexity
huawei CWE-20
7.5
2021-08-23 CVE-2021-22449 Unspecified vulnerability in Huawei Elf-G10Hn 1.0.0.608
There is a logic vulnerability in Elf-G10HN 1.0.0.608.
network
low complexity
huawei
7.5
2021-08-10 CVE-2021-22385 Exposure of Resource to Wrong Sphere vulnerability in Huawei Emui and Magic UI
A component of the Huawei smartphone has a External Control of System or Configuration Setting vulnerability.
local
low complexity
huawei CWE-668
7.8
2021-08-10 CVE-2021-22386 Double Free vulnerability in Huawei Emui and Magic UI
A component of the Huawei smartphone has a Double Free vulnerability.
local
high complexity
huawei CWE-415
7.0