Loading HuntDB...

Vulnerabilities

CVE-2020-9081

LOW

There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in specific mode to exploit this vulnerability. Successful exploit could allow the attacker to bypass app lock. (Vulnerability ID: HWPSIRT-2019-12144) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9081.

Published Dec 27, 2024

CVE-2020-9080

HIGH

There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker could craft a specific input to exploit this vulnerability. Successful exploitation may lead to local privilege escalation. (Vulnerability ID: HWPSIRT-2020-05272) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9080.

Published Dec 27, 2024

CVE-2023-7300

HIGH

Huawei Home Music System has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the music host file to be deleted or the file permission to be changed.(Vulnerability ID:HWPSIRT-2023-60613)

Published Dec 26, 2024

CVE-2022-34159

HIGH

Huawei printers have an input verification vulnerability. Successful exploitation of this vulnerability may cause device service exceptions. (Vulnerability ID: HWPSIRT-2022-80078) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2022-34159.

Published Dec 20, 2024

CVE-2022-32204

HIGH

There is an improper input verification vulnerability in Huawei printer product. Successful exploitation of this vulnerability may cause service abnormal. (Vulnerability ID: HWPSIRT-2022-87185) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2022-32204.

Published Dec 20, 2024

CVE-2022-32203

CRITICAL

There is a command injection vulnerability in Huawei terminal printer product. Successful exploitation could result in the highest privileges of the printer. (Vulnerability ID: HWPSIRT-2022-51773) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2022-32203.

Published Dec 20, 2024

CVE-2022-32144

HIGH

There is an insufficient input verification vulnerability in Huawei product. Successful exploitation of this vulnerability may lead to service abnormal. (Vulnerability ID: HWPSIRT-2022-76192) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2022-32144.

Published Dec 20, 2024

CVE-2020-9250

LOW

There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit this vulnerability. Due to insufficient verification, successful exploitation may impact the service. (Vulnerability ID: HWPSIRT-2019-12302) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9250.

Published Dec 20, 2024

CVE-2024-54122

MEDIUM

Concurrent variable access vulnerability in the ability module Impact: Successful exploitation of this vulnerability may affect availability.

Published Dec 12, 2024

CVE-2024-54119

MEDIUM

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54117

MEDIUM

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54116

MEDIUM

Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.

Published Dec 12, 2024

CVE-2024-54115

MEDIUM

Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54114

MEDIUM

Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54113

MEDIUM

Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect power consumption.

Published Dec 12, 2024

CVE-2024-54112

MEDIUM

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54111

MEDIUM

Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54110

MEDIUM

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54109

MEDIUM

Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54108

MEDIUM

Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54107

HIGH

Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54106

HIGH

Null pointer dereference vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54105

MEDIUM

Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54104

MEDIUM

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54103

MEDIUM

Vulnerability of improper access control in the album module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54102

MEDIUM

Race condition vulnerability in the DDR module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Dec 12, 2024

CVE-2024-54101

MEDIUM

Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability.

Published Dec 12, 2024

CVE-2024-54100

MEDIUM

Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.

Published Dec 12, 2024

CVE-2024-54099

MEDIUM

File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.

Published Dec 12, 2024

CVE-2024-54098

HIGH

Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity.

Published Dec 12, 2024

CVE-2024-54097

HIGH

Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature implementation and integrity.

Published Dec 12, 2024

CVE-2024-54096

MEDIUM

Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy.

Published Dec 12, 2024

CVE-2024-51530

MEDIUM

LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51529

MEDIUM

Data verification vulnerability in the battery module Impact: Successful exploitation of this vulnerability may affect function stability.

Published Nov 05, 2024

CVE-2024-51528

MEDIUM

Vulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51527

MEDIUM

Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51526

HIGH

Permission control vulnerability in the hidebug module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51525

MEDIUM

Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51524

MEDIUM

Permission control vulnerability in the Wi-Fi module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51523

HIGH

Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51522

MEDIUM

Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51521

MEDIUM

Input parameter verification vulnerability in the background service module Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51520

MEDIUM

Vulnerability of input parameters not being verified in the HDC module Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51519

MEDIUM

Vulnerability of input parameters not being verified in the HDC module Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51518

MEDIUM

Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51517

MEDIUM

Vulnerability of improper memory access in the phone service module Impact: Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51516

MEDIUM

Permission control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to function abnormally.

Published Nov 05, 2024

CVE-2024-51515

MEDIUM

Race condition vulnerability in the kernel network module Impact:Successful exploitation of this vulnerability may affect availability.

Published Nov 05, 2024

CVE-2024-51514

MEDIUM

Vulnerability of pop-up windows belonging to no app in the VPN module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Published Nov 05, 2024

CVE-2024-51513

MEDIUM

Vulnerability of processes not being fully terminated in the VPN module Impact: Successful exploitation of this vulnerability will affect power consumption.

Published Nov 05, 2024