Vulnerabilities > Huawei > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-06-19 CVE-2023-34156 Unspecified vulnerability in Huawei Emui
Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploitation of this vulnerability may cause services to be denied.
network
low complexity
huawei
5.3
2023-06-19 CVE-2023-34158 Authentication Bypass by Spoofing vulnerability in Huawei Emui 12.0.0/13.0.0
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-19 CVE-2023-34160 Authentication Bypass by Spoofing vulnerability in Huawei Emui 12.0.0/13.0.0
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-19 CVE-2023-34167 Authentication Bypass by Spoofing vulnerability in Huawei Emui
Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-party apps to hide app icons on the desktop to prevent them from being uninstalled.
network
low complexity
huawei CWE-290
5.3
2023-06-16 CVE-2022-48469 Authentication Bypass by Spoofing vulnerability in Huawei B535-232A Firmware 2.0.0.1
There is a traffic hijacking vulnerability in Huawei routers.
network
low complexity
huawei CWE-290
6.5
2023-06-16 CVE-2023-34157 Unspecified vulnerability in Huawei Harmonyos
Vulnerability of HwWatchHealth being hijacked.Successful exploitation of this vulnerability may cause repeated pop-up windows of the app.
network
low complexity
huawei
6.5
2023-06-16 CVE-2023-34165 Missing Authorization vulnerability in Huawei Harmonyos 2.1
Unauthorized access vulnerability in the Save for later feature provided by AI Touch.Successful exploitation of this vulnerability may cause third-party apps to forge a URI for unauthorized access with zero permissions.
network
low complexity
huawei CWE-862
5.3
2023-05-26 CVE-2023-0117 Improper Authentication vulnerability in Huawei Emui 13.0.0
The online authentication provided by the hwKitAssistant lacks strict identity verification of applications.
network
low complexity
huawei CWE-287
5.3
2023-04-16 CVE-2022-48313 Unspecified vulnerability in Huawei Emui and Harmonyos
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process.
low complexity
huawei
6.5
2023-04-16 CVE-2022-48314 Unspecified vulnerability in Huawei Emui and Harmonyos
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process.
low complexity
huawei
6.5