Vulnerabilities > Huawei > High

DATE CVE VULNERABILITY TITLE RISK
2018-03-09 CVE-2017-17324 Integer Overflow or Wraparound vulnerability in Huawei Mate 9 PRO Firmware Lonal00Bc00B139D/Lonal00Bc00B229
Huawei Mate 9 Pro smartphones with software LON-AL00BC00B139D; LON-AL00BC00B229 have an integer overflow vulnerability.
local
low complexity
huawei CWE-190
7.8
2018-03-09 CVE-2017-17227 Out-of-bounds Write vulnerability in Huawei Mate 10 Firmware
GPU driver in Huawei Mate 10 smart phones with the versions before ALP-L09 8.0.0.120(C212); The versions before ALP-L09 8.0.0.127(C900); The versions before ALP-L09 8.0.0.128(402/C02/C109/C346/C432/C652) has a out-of-bounds memory access vulnerability due to the input parameters validation.
local
low complexity
huawei CWE-787
7.8
2018-03-09 CVE-2017-17225 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Mate 9 PRO Firmware
The Near Field Communication (NFC) module in Huawei Mate 9 Pro mobile phones with the versions before LON-AL00B 8.0.0.340a(C00) has a buffer overflow vulnerability due to the lack of input validation.
low complexity
huawei CWE-119
8.8
2018-03-09 CVE-2017-17223 Path Traversal vulnerability in Huawei products
Huawei eSpace 7910 V200R003C30; eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 have a directory traversal vulnerability.
network
low complexity
huawei CWE-22
8.8
2018-03-09 CVE-2017-17222 Improper Input Validation vulnerability in Huawei Espace 7950 Firmware and Espace 8950 Firmware
Import Language Package function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability.
network
low complexity
huawei CWE-20
8.8
2018-03-09 CVE-2017-17221 Improper Input Validation vulnerability in Huawei Espace 7950 Firmware and Espace 8950 Firmware
Import Signal Tone function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability.
network
low complexity
huawei CWE-20
8.8
2018-03-09 CVE-2017-17146 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Dp300 Firmware V500R002C00
Huawei DP300 V500R002C00 have a buffer overflow vulnerability due to the lack of validation.
local
low complexity
huawei CWE-119
7.8
2018-02-15 CVE-2017-17300 Improper Input Validation vulnerability in Huawei products
Huawei S12700 V200R008C00, V200R009C00, S5700 V200R007C00, V200R008C00, V200R009C00, S6700 V200R008C00, V200R009C00, S7700 V200R008C00, V200R009C00, S9700 V200R008C00, V200R009C00 have a numeric errors vulnerability.
network
low complexity
huawei CWE-20
7.5
2018-02-15 CVE-2017-17299 Improper Input Validation vulnerability in Huawei products
Huawei AR120-S V200R006C10, V200R007C00, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C02, AR1200-S V200R006C10, V200R007C00, V200R008C20, AR150 V200R006C10, V200R007C00, V200R007C02, AR150-S V200R006C10, V200R007C00, AR160 V200R006C10, V200R006C12, V200R007C00S, V200R007C02, AR200 V200R006C10, V200R007C00, AR200-S V200R006C10, V200R007C00, AR2200 V200R006C10, V200R006C13, V200R006C16, V200R007C00, V200R007C02, AR2200-S V200R006C10, V200R007C00, V200R008C20, AR3200 V200R006C10, V200R006C11, V200R007C00, V200R007C02, AR3600 V200R006C10, V200R007C00, AR510 V200R006C12, V200R006C13, V200R006C15, V200R006C16, V200R006C17, V200R007C00, IPS Module V500R001C30, NIP6300 V500R001C30, NetEngine16EX V200R006C10, V200R007C00 have an insufficient input validation vulnerability.
network
low complexity
huawei CWE-20
7.5
2018-02-15 CVE-2017-17290 Resource Exhaustion vulnerability in Huawei Te60 Firmware and Viewpoint 9030 Firmware
The Light Directory Access Protocol (LDAP) clients of Huawei TE60 with software V600R006C00, ViewPoint 9030 with software V100R011C02, V100R011C03 have a resource management errors vulnerability.
network
low complexity
huawei CWE-400
7.5