cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 26 of 42
CVE-2023-52537P3HIGHCVSS 7.5v12.0.0v13.0.02024-04-08
CVE-2023-52537 [HIGH] CWE-280 CVE-2023-52537: Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful ex Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-52362P3HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52362 [HIGH] CWE-276 CVE-2023-52362: Permission management vulnerability in the lock screen module.Successful exploitation of this vulner Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-52359P3HIGHCVSS 7.5v12.0.0v13.0.02024-04-08
CVE-2023-52359 [HIGH] CWE-285 CVE-2023-52359: Vulnerability of permission verification in some APIs in the ActivityTaskManagerService module. Impa Vulnerability of permission verification in some APIs in the ActivityTaskManagerService module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-52716P3HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2023-52716 [HIGH] CWE-269 CVE-2023-52716: Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module. I Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2021-22442P3HIGHCVSS 7.5v9.1.0v9.1.1+4 more2021-08-02
CVE-2021-22442 [HIGH] CWE-354 CVE-2021-22442: There is an Improper Validation of Integrity Check Value Vulnerability in Huawei Smartphone.Successf There is an Improper Validation of Integrity Check Value Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.
nvd
CVE-2021-37050P3HIGHCVSS 7.5v10.1.1v11.0.02021-12-08
CVE-2021-37050 [HIGH] CWE-311 CVE-2021-37050: There is a Missing sensitive data encryption vulnerability in Huawei Smartphone.Successful exploitat There is a Missing sensitive data encryption vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2022-48295P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48295 [HIGH] CWE-281 CVE-2022-48295: The IHwAntiMalPlugin interface lacks permission verification. Successful exploitation of this vulner The IHwAntiMalPlugin interface lacks permission verification. Successful exploitation of this vulnerability can lead to filling problems (batch installation of applications).
nvd
CVE-2022-48301P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48301 [HIGH] CWE-281 CVE-2022-48301: The bundle management module lacks permission verification in some APIs. Successful exploitation of The bundle management module lacks permission verification in some APIs. Successful exploitation of this vulnerability may restore the pre-installed apps that have been uninstalled.
nvd
CVE-2023-44119P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-10-11
CVE-2023-44119 [HIGH] CWE-667 CVE-2023-44119: Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vu Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2022-41588P3HIGHCVSS 7.5v11.0.1v12.0.02022-10-14
CVE-2022-41588 [HIGH] CWE-1264 CVE-2022-41588: The home screen module has a vulnerability in service logic processing.Successful exploitation of th The home screen module has a vulnerability in service logic processing.Successful exploitation of this vulnerability may affect data integrity.
nvd
CVE-2023-52357P3HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52357 [HIGH] CWE-502 CVE-2023-52357: Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploi Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-54628P3HIGHCVSS 7.5v14.0.0v15.0.02025-08-06
CVE-2025-54628 [HIGH] CWE-118 CVE-2025-54628: Vulnerability of incomplete verification information in the communication module. Impact: Successful Vulnerability of incomplete verification information in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-39393P3HIGHCVSS 7.5v12.0.1v13.0.02023-08-13
CVE-2023-39393 [HIGH] CWE-200 CVE-2023-39393: Vulnerability of insecure signatures in the ServiceWifiResources module. Successful exploitation of Vulnerability of insecure signatures in the ServiceWifiResources module. Successful exploitation of this vulnerability may cause ServiceWifiResources to be maliciously modified and overwritten.
nvd
CVE-2023-39392P3HIGHCVSS 7.5v12.0.1v13.0.02023-08-13
CVE-2023-39392 [HIGH] CWE-16 CVE-2023-39392: Vulnerability of insecure signatures in the OsuLogin module. Successful exploitation of this vulnera Vulnerability of insecure signatures in the OsuLogin module. Successful exploitation of this vulnerability may cause OsuLogin to be maliciously modified and overwritten.
nvd
CVE-2024-45441P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2024-09-04
CVE-2024-45441 [HIGH] CWE-20 CVE-2024-45441: Input verification vulnerability in the system service module Impact: Successful exploitation of thi Input verification vulnerability in the system service module Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2024-45442P3HIGHCVSS 7.5v13.0.0v14.0.02024-09-04
CVE-2024-45442 [HIGH] CWE-264 CVE-2024-45442: Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Success Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2024-54098P3HIGHCVSS 7.5v12.0.0v13.0.0+1 more2024-12-12
CVE-2024-54098 [HIGH] CWE-840 CVE-2024-54098: Service logic error vulnerability in the system service module Impact: Successful exploitation of th Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2021-22335P3HIGHCVSS 7.8v9.1.0v9.1.1+4 more2021-06-03
CVE-2021-22335 [HIGH] CWE-787 CVE-2021-22335: There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exp There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause exceptions in image processing.
nvd
CVE-2020-9147P3HIGHCVSS 7.8v10.0.0v10.1.0+2 more2021-04-01
CVE-2020-9147 [HIGH] CWE-125 CVE-2020-9147: A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local atta A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit this vulnerability by carefully constructing attack scenarios to cause out-of-bounds read.
nvd
CVE-2022-41585P3HIGHCVSS 7.8v11.0.1v12.0.02022-10-14
CVE-2022-41585 [HIGH] CWE-125 CVE-2022-41585: The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerabil The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause memory overwriting.
nvd
Huawei Emui vulnerabilities | cvebase