Vulnerabilities > Huawei > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-06-19 CVE-2023-34158 Authentication Bypass by Spoofing vulnerability in Huawei Emui 12.0.0/13.0.0
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-19 CVE-2023-34160 Authentication Bypass by Spoofing vulnerability in Huawei Emui 12.0.0/13.0.0
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-19 CVE-2023-34167 Authentication Bypass by Spoofing vulnerability in Huawei Emui
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-16 CVE-2022-48469 Authentication Bypass by Spoofing vulnerability in Huawei B535-232A Firmware 2.0.0.1
There is a traffic hijacking vulnerability in Huawei routers.
network
low complexity
huawei CWE-290
6.5
2023-06-16 CVE-2023-34157 Unspecified vulnerability in Huawei Harmonyos
Vulnerability of HwWatchHealth being hijacked.Successful exploitation of this vulnerability may cause repeated pop-up windows of the app.
network
low complexity
huawei
6.5
2023-06-16 CVE-2023-34165 Missing Authorization vulnerability in Huawei Harmonyos 2.1
Unauthorized access vulnerability in the Save for later feature provided by AI Touch.Successful exploitation of this vulnerability may cause third-party apps to forge a URI for unauthorized access with zero permissions.
network
low complexity
huawei CWE-862
5.3
2023-05-26 CVE-2023-0117 Improper Authentication vulnerability in Huawei Emui 13.0.0
The online authentication provided by the hwKitAssistant lacks strict identity verification of applications.
network
low complexity
huawei CWE-287
5.3
2023-04-16 CVE-2022-48313 Unspecified vulnerability in Huawei Emui and Harmonyos
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process.
low complexity
huawei
6.5
2023-04-16 CVE-2022-48314 Unspecified vulnerability in Huawei Emui and Harmonyos
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process.
low complexity
huawei
6.5
2023-03-27 CVE-2022-48291 Missing Authentication for Critical Function vulnerability in Huawei Emui and Harmonyos
The Bluetooth module has an authentication bypass vulnerability in the pairing process.
low complexity
huawei CWE-306
6.5