Vulnerabilities (CVE)

Filtered by vendor Huawei Subscribe
Total 2156 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-8769 1 Huawei 1 Utps Firmware 2024-02-14 7.2 HIGH 6.7 MEDIUM
Huawei UTPS earlier than UTPS-V200R003B015D16SPC00C983 has an unquoted service path vulnerability which can lead to the truncation of UTPS service query paths. An attacker may put an executable file in the search path of the affected service and obtain elevated privileges after the executable file is executed.
CVE-2009-2272 1 Huawei 2 D100, D100 Firmware 2024-02-13 5.0 MEDIUM 7.5 HIGH
The Huawei D100 stores the administrator's account name and password in cleartext in a cookie, which allows context-dependent attackers to obtain sensitive information by (1) reading a cookie file, by (2) sniffing the network for HTTP headers, and possibly by using unspecified other vectors.
CVE-2023-44109 1 Huawei 2 Emui, Harmonyos 2024-02-01 N/A 7.5 HIGH
Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2019-14835 8 Canonical, Debian, Fedoraproject and 5 more 44 Ubuntu Linux, Debian Linux, Fedora and 41 more 2023-12-15 7.2 HIGH 7.8 HIGH
A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.
CVE-2022-48616 1 Huawei 2 Ar617vw, Ar617vw Firmware 2023-12-15 N/A 7.5 HIGH
A Huawei data communication product has a command injection vulnerability. Successful exploitation of this vulnerability may allow attackers to gain higher privileges.
CVE-2022-48615 1 Huawei 2 Ar617vw, Ar617vw Firmware 2023-12-15 N/A 7.1 HIGH
An improper access control vulnerability exists in a Huawei datacom product. Attackers can exploit this vulnerability to obtain partial device information.
CVE-2023-6514 1 Huawei 2 Ajmd-370s, Ajmd-370s Firmware 2023-12-12 N/A 8.8 HIGH
The Bluetooth module of some Huawei Smart Screen products has an identity authentication bypass vulnerability. Successful exploitation of this vulnerability may allow attackers to access restricted functions.  Successful exploitation of this vulnerability may allow attackers to access restricted functions.
CVE-2023-49247 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
Permission verification vulnerability in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49243 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
Vulnerability of unauthorized access to email attachments in the email module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49245 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
Unauthorized access vulnerability in the Huawei Share module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49244 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
Permission management vulnerability in the multi-user module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49248 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 5.5 MEDIUM
Vulnerability of unauthorized file access in the Settings app. Successful exploitation of this vulnerability may cause unauthorized file access.
CVE-2023-49242 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
Free broadcast vulnerability in the running management module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49241 1 Huawei 2 Emui, Harmonyos 2023-12-12 N/A 7.5 HIGH
API permission control vulnerability in the network management module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-44099 1 Huawei 2 Emui, Harmonyos 2023-12-11 N/A 7.5 HIGH
Vulnerability of data verification errors in the kernel module. Successful exploitation of this vulnerability may cause WLAN interruption.
CVE-2023-46773 1 Huawei 2 Emui, Harmonyos 2023-12-11 N/A 9.8 CRITICAL
Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege escalation.
CVE-2023-49239 1 Huawei 2 Emui, Harmonyos 2023-12-11 N/A 7.5 HIGH
Unauthorized access vulnerability in the card management module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-49240 1 Huawei 2 Emui, Harmonyos 2023-12-11 N/A 7.5 HIGH
Unauthorized access vulnerability in the launcher module. Successful exploitation of this vulnerability may affect service confidentiality.
CVE-2023-5801 1 Huawei 2 Emui, Harmonyos 2023-11-15 N/A 9.1 CRITICAL
Vulnerability of identity verification being bypassed in the face unlock module. Successful exploitation of this vulnerability will affect integrity and confidentiality.
CVE-2023-46768 1 Huawei 2 Emui, Harmonyos 2023-11-15 N/A 7.5 HIGH
Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perform abnormally.