Vulnerabilities > Huawei > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-11-13 CVE-2019-5279 Unspecified vulnerability in Huawei Emily-L29C Firmware
Huawei smart phones Emily-L29C with Versions earlier than 9.1.0.311(C10E2R1P13T8), Versions earlier than 9.1.0.311(C461E2R1P11T8), Versions earlier than 9.1.0.316(C635E2R1P11T8), Versions earlier than 9.1.0.311(C185E2R1P12T8), Versions earlier than 9.1.0.311(C605E2R1P12T8), Versions earlier than 9.1.0.311(C636E7R1P13T8) have an information leakage vulnerability.
local
low complexity
huawei
5.5
2019-11-13 CVE-2019-5246 Insufficient Verification of Data Authenticity vulnerability in Huawei Elle-Al00B Firmware
Smartphones with software of ELLE-AL00B 9.1.0.109(C00E106R1P21), 9.1.0.113(C00E110R1P21), 9.1.0.125(C00E120R1P21), 9.1.0.135(C00E130R1P21), 9.1.0.153(C00E150R1P21), 9.1.0.155(C00E150R1P21), 9.1.0.162(C00E160R2P1) have an insufficient verification vulnerability.
low complexity
huawei CWE-345
6.2
2019-11-13 CVE-2019-5231 Incorrect Authorization vulnerability in Huawei P30 Firmware
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability.
low complexity
huawei CWE-863
4.6
2019-11-13 CVE-2019-5230 Improper Input Validation vulnerability in Huawei Mate RS Firmware, P20 Firmware and P20 PRO Firmware
P20 Pro, P20, Mate RS smartphones with versions earlier than Charlotte-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than Emily-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than NEO-AL00D NEO-AL00 9.1.0.321(C786E320R1P1T8) have an improper validation vulnerability.
local
low complexity
huawei CWE-20
5.5
2019-11-12 CVE-2019-5229 Insufficient Verification of Data Authenticity vulnerability in Huawei P30 Firmware
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an insufficient verification vulnerability.
low complexity
huawei CWE-345
6.2
2019-08-13 CVE-2019-5280 Improper Certificate Validation vulnerability in Huawei Cloudlink Phone 7900 Firmware V600R019C10
The SIP TLS module of Huawei CloudLink Phone 7900 with V600R019C10 has a TLS certificate verification vulnerability.
network
high complexity
huawei CWE-295
6.5
2019-08-08 CVE-2019-5239 Unspecified vulnerability in Huawei Pcmanager(China) and Pcmanager(Oversea)
Huawei PCManager with the versions before 9.0.1.66 (Oversea) and versions before 9.0.1.70 (China) have an information leak vulnerability.
local
low complexity
huawei
5.5
2019-08-08 CVE-2019-5236 Double Free vulnerability in Huawei Emily-L29C Firmware
Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C432), 8.1.0.135(C782), 8.1.0.154(C10), 8.1.0.154(C461), 8.1.0.154(C635), 8.1.0.156(C185), 8.1.0.156(C605), 8.1.0.159(C636) have a double free vulnerability.
network
low complexity
huawei CWE-415
6.3
2019-07-17 CVE-2019-5222 Incorrect Permission Assignment for Critical Resource vulnerability in Huawei Honor Magic 2 Firmware 10.0.0.187(C00E61R2P11)/Tonyal00B/Tonytl00B9.0.0.182(C00E180R2P2)
There is an information disclosure vulnerability on Secure Input of certain Huawei smartphones in Versions earlier than Tony-AL00B 9.1.0.216(C00E214R2P1).
local
low complexity
huawei CWE-732
5.5
2019-07-10 CVE-2019-5221 Path Traversal vulnerability in Huawei Mate 20 X Firmware
There is a path traversal vulnerability on Huawei Share.
low complexity
huawei CWE-22
6.5