cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 18 of 42
CVE-2023-52376P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52376 [HIGH] CWE-212 CVE-2023-52376: Information management vulnerability in the Gallery module.Successful exploitation of this vulnerabi Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52102P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52102 [HIGH] CWE-116 CVE-2023-52102: Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vu Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52104P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-52104 [HIGH] CVE-2023-52104: Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vu Vulnerability of parameters being not verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44109P3HIGHCVSS 7.5v12.0v12.0.1+2 more2023-10-11
CVE-2023-44109 [HIGH] CWE-74 CVE-2023-44109: Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect s Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52099P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52099 [HIGH] CWE-284 CVE-2023-52099: Vulnerability of foreground service restrictions being bypassed in the NMS module. Successful exploi Vulnerability of foreground service restrictions being bypassed in the NMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-44117P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-44117 [HIGH] CWE-290 CVE-2023-44117: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-4566P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-4566 [HIGH] CWE-290 CVE-2023-4566: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52107P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52107 [HIGH] CWE-269 CVE-2023-52107: Vulnerability of permissions being not strictly verified in the WMS module. Successful exploitation Vulnerability of permissions being not strictly verified in the WMS module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-27896P3HIGHCVSS 7.5v13.0.02024-04-08
CVE-2024-27896 [HIGH] CWE-20 CVE-2024-27896: Input verification vulnerability in the log module. Impact: Successful exploitation of this vulnerab Input verification vulnerability in the log module. Impact: Successful exploitation of this vulnerability can affect integrity.
nvd
CVE-2023-52360P3HIGHCVSS 7.5v12.0.02024-02-18
CVE-2023-52360 [HIGH] CWE-511 CVE-2023-52360: Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect servi Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2023-52114P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52114 [HIGH] CWE-269 CVE-2023-52114: Data confidentiality vulnerability in the ScreenReader module. Successful exploitation of this vulne Data confidentiality vulnerability in the ScreenReader module. Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2022-46320P3CRITICALCVSS 9.8v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-46320 [CRITICAL] CWE-125 CVE-2022-46320: The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerabi The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may cause memory overwriting.
nvd
CVE-2023-52375P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52375 [HIGH] CWE-284 CVE-2023-52375: Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-47294P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2024-09-27
CVE-2024-47294 [HIGH] CWE-16 CVE-2024-47294: Access permission verification vulnerability in the input method framework module Impact: Successful Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-56440P3HIGHCVSS 7.5v13.0.0v14.0.02025-01-08
CVE-2024-56440 [HIGH] CWE-264 CVE-2024-56440: Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2023-52109P3HIGHCVSS 7.5v13.0.02024-01-16
CVE-2023-52109 [HIGH] CWE-345 CVE-2023-52109: Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitat Vulnerability of trust relationships being inaccurate in distributed scenarios. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52954P3HIGHCVSS 7.5v12.0.0v13.0.02025-01-08
CVE-2023-52954 [HIGH] CWE-701 CVE-2023-52954: Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation o Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-37051P3CRITICALCVSS 9.1v9.1.0v9.1.1+5 more2021-12-08
CVE-2021-37051 [CRITICAL] CWE-125 CVE-2021-37051: There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vu There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause out-of-bounds memory access.
nvd
CVE-2021-22352P3HIGHCVSS 7.8v10.1.1v11.0.0+1 more2021-06-30
CVE-2021-22352 [HIGH] CVE-2021-22352: There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands.
nvd
CVE-2022-41576P3HIGHCVSS 7.8v11.0.1v12.0.02022-10-14
CVE-2022-41576 [HIGH] CWE-94 CVE-2022-41576: The rphone module has a script that can be maliciously modified.Successful exploitation of this vuln The rphone module has a script that can be maliciously modified.Successful exploitation of this vulnerability may cause irreversible programs to be implanted on user devices.
nvd
Huawei Emui vulnerabilities | cvebase