Vulnerabilities > Huawei > High

DATE CVE VULNERABILITY TITLE RISK
2020-07-06 CVE-2020-9262 Use After Free vulnerability in Huawei Mate 30 Firmware
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability.
local
low complexity
huawei CWE-416
7.8
2020-07-06 CVE-2020-9261 Type Confusion vulnerability in Huawei Mate 30 Firmware
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability.
local
low complexity
huawei CWE-843
7.8
2020-07-06 CVE-2020-9100 Uncontrolled Search Path Element vulnerability in Huawei Hisuite
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability.
local
low complexity
huawei CWE-427
7.8
2020-06-18 CVE-2020-9225 Improper Privilege Management vulnerability in Huawei Fusionsphere Openstack 6.5.1
FusionSphere OpenStack 6.5.1 have an improper permissions management vulnerability.
local
low complexity
huawei CWE-269
7.8
2020-06-08 CVE-2020-12695 Incorrect Default Permissions vulnerability in multiple products
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
7.5
2020-05-29 CVE-2020-1870 Missing Release of Resource after Effective Lifetime vulnerability in Huawei products
There is a denial of service vulnerability in some Huawei products.
network
low complexity
huawei CWE-772
7.5
2020-05-29 CVE-2020-1832 Out-of-bounds Write vulnerability in Huawei E6878-370 Firmware 10.0.3.1(H557Sp27C233)/10.0.3.1(H563Sp1C233)
E6878-370 products with versions of 10.0.3.1(H557SP27C233) and 10.0.3.1(H563SP1C00) have a stack buffer overflow vulnerability.
low complexity
huawei CWE-787
8.8
2020-05-21 CVE-2020-1799 Use After Free vulnerability in Huawei E6878-370 Firmware 10.0.3.1(H557Sp27C233)/10.0.3.1(H563Sp1C00)/10.0.3.1(H563Sp1C233)
E6878-370 with versions of 10.0.3.1(H557SP27C233), 10.0.3.1(H563SP1C00), 10.0.3.1(H563SP1C233) has a use after free vulnerability.
high complexity
huawei CWE-416
7.5
2020-05-15 CVE-2020-1808 Out-of-bounds Read vulnerability in Huawei products
Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 smartphones with versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.176(C00E60R2P11);9.1.0.135(C00E133R2P1); versions earlier than 10.1.0.123(C431E22R3P5), versions earlier than 10.1.0.126(C636E5R3P4), versions earlier than 10.1.0.160(C00E160R2P11); versions earlier than 10.1.0.126(C185E8R5P1), versions earlier than 10.1.0.126(C636E9R2P4), versions earlier than 10.1.0.160(C00E160R2P8); versions earlier than 10.0.0.179(C636E3R4P3), versions earlier than 10.0.0.180(C185E3R3P3), versions earlier than 10.0.0.180(C432E10R3P4), versions earlier than 10.0.0.181(C675E5R1P2) have an out of bound read vulnerability.
local
low complexity
huawei CWE-125
7.1
2020-04-30 CVE-2020-9098 Release of Invalid Pointer or Reference vulnerability in Huawei Oceanstor 5310 Firmware V500R007C60Spc100
Huawei OceanStor 5310 product with version of V500R007C60SPC100 has an invalid pointer access vulnerability.
network
low complexity
huawei CWE-763
7.5