Huawei Emui vulnerabilities
831 known vulnerabilities affecting huawei/emui.
Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19
Vulnerabilities
Page 18 of 42
CVE-2023-52376P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52376 [HIGH] CWE-212 CVE-2023-52376: Information management vulnerability in the Gallery module.Successful exploitation of this vulnerabi
Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52102P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52102 [HIGH] CWE-116 CVE-2023-52102: Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vu
Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52104P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-52104 [HIGH] CVE-2023-52104: Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vu
Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44109P3HIGHCVSS 7.5v12.0v12.0.1+2 more2023-10-11
CVE-2023-44109 [HIGH] CWE-74 CVE-2023-44109: Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect s
Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52099P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52099 [HIGH] CWE-284 CVE-2023-52099: Vulnerability of foreground service restrictions being bypassed in the NMS module. Successful exploi
Vulnerability of foreground service restrictions being bypassed in the NMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44117P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-44117 [HIGH] CWE-290 CVE-2023-44117: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat
Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-4566P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-4566 [HIGH] CWE-290 CVE-2023-4566: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat
Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52107P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52107 [HIGH] CWE-269 CVE-2023-52107: Vulnerability of permissions being not strictly verified in the WMS module. Successful exploitation
Vulnerability of permissions being not strictly verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-27896P3HIGHCVSS 7.5v13.0.02024-04-08
CVE-2024-27896 [HIGH] CWE-20 CVE-2024-27896: Input verification vulnerability in the log module. Impact: Successful exploitation of this vulnerab
Input verification vulnerability in the log module.
Impact: Successful exploitation of this vulnerability can affect integrity.
nvd
CVE-2023-52360P3HIGHCVSS 7.5v12.0.02024-02-18
CVE-2023-52360 [HIGH] CWE-511 CVE-2023-52360: Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect servi
Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2023-52114P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52114 [HIGH] CWE-269 CVE-2023-52114: Data confidentiality vulnerability in the ScreenReader module. Successful exploitation of this vulne
Data confidentiality vulnerability in the ScreenReader module. Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2022-46320P3CRITICALCVSS 9.8v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-46320 [CRITICAL] CWE-125 CVE-2022-46320: The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerabi
The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may cause memory overwriting.
nvd
CVE-2023-52375P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52375 [HIGH] CWE-284 CVE-2023-52375: Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this
Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-47294P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2024-09-27
CVE-2024-47294 [HIGH] CWE-16 CVE-2024-47294: Access permission verification vulnerability in the input method framework module Impact: Successful
Access permission verification vulnerability in the input method framework module
Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-56440P3HIGHCVSS 7.5v13.0.0v14.0.02025-01-08
CVE-2024-56440 [HIGH] CWE-264 CVE-2024-56440: Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this
Permission control vulnerability in the Connectivity module
Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2023-52109P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-52109 [HIGH] CWE-345 CVE-2023-52109: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat
Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52954P3HIGHCVSS 7.5v12.0.0v13.0.02025-01-08
CVE-2023-52954 [HIGH] CWE-701 CVE-2023-52954: Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation o
Vulnerability of improper permission control in the Gallery module
Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-37051P3CRITICALCVSS 9.1v9.1.0v9.1.1+5 more2021-12-08
CVE-2021-37051 [CRITICAL] CWE-125 CVE-2021-37051: There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vu
There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause out-of-bounds memory access.
nvd
CVE-2021-22352P3HIGHCVSS 7.8v10.1.1v11.0.0+1 more2021-06-30
CVE-2021-22352 [HIGH] CVE-2021-22352: There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this
There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands.
nvd
CVE-2022-41576P3HIGHCVSS 7.8v11.0.1v12.0.02022-10-14
CVE-2022-41576 [HIGH] CWE-94 CVE-2022-41576: The rphone module has a script that can be maliciously modified.Successful exploitation of this vuln
The rphone module has a script that can be maliciously modified.Successful exploitation of this vulnerability may cause irreversible programs to be implanted on user devices.
nvd