cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 28 of 42
CVE-2021-37030P3HIGHCVSS 7.5v9.1.0v9.1.1+4 more2021-11-23
CVE-2021-37030 [HIGH] CWE-276 CVE-2021-37030: There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this v There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
nvd
CVE-2022-37004P3HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-08-10
CVE-2022-37004 [HIGH] CVE-2022-37004: The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successf The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2022-37007P3HIGHCVSS 7.5v11.0.0v12.0.02022-08-10
CVE-2022-37007 [HIGH] CWE-125 CVE-2022-37007: The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnera The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2021-40034P3HIGHCVSS 7.5v10.1.0v10.1.1+2 more2022-08-10
CVE-2021-40034 [HIGH] CVE-2021-40034: The video framework has the memory overwriting vulnerability caused by addition overflow. Successful The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2023-46772P3HIGHCVSS 7.5v11.0.12023-11-08
CVE-2023-46772 [HIGH] CWE-787 CVE-2023-46772: Vulnerability of parameters being out of the value range in the QMI service module. Successful explo Vulnerability of parameters being out of the value range in the QMI service module. Successful exploitation of this vulnerability may cause errors in reading file data.
nvd
CVE-2022-48356P3HIGHCVSS 7.5v12.0.02023-03-27
CVE-2022-48356 [HIGH] CWE-20 CVE-2022-48356: The facial recognition module has a vulnerability in input parameter verification. Successful exploi The facial recognition module has a vulnerability in input parameter verification. Successful exploitation of this vulnerability may cause failed facial recognition.
nvd
CVE-2022-46317P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-46317 [HIGH] CWE-125 CVE-2022-46317: The power consumption module has an out-of-bounds read vulnerability. Successful exploitation of thi The power consumption module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-44554P3HIGHCVSS 7.5v12.0.02022-11-09
CVE-2022-44554 [HIGH] CWE-276 CVE-2022-44554: The power module has a vulnerability in permission verification. Successful exploitation of this vul The power module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause abnormal status of a module on the device.
nvd
CVE-2023-34155P3HIGHCVSS 7.5v13.0.0vunspecified2023-06-19
CVE-2023-34155 [HIGH] CVE-2023-34155: Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this v Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-34166P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-06-19
CVE-2023-34166 [HIGH] CWE-400 CVE-2023-34166: Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitati Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart.
nvd
CVE-2021-46881P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46881 [HIGH] CWE-120 CVE-2021-46881: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46883P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46883 [HIGH] CWE-120 CVE-2021-46883: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46882P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46882 [HIGH] CWE-120 CVE-2021-46882: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46884P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46884 [HIGH] CWE-120 CVE-2021-46884: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46886P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46886 [HIGH] CWE-120 CVE-2021-46886: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46885P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46885 [HIGH] CWE-120 CVE-2021-46885: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-39396P3HIGHCVSS 7.5v13.0.02023-08-13
CVE-2023-39396 [HIGH] CWE-125 CVE-2023-39396: Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-52113P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52113 [HIGH] CWE-400 CVE-2023-52113: launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this v launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-39382P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-08-13
CVE-2023-39382 [HIGH] CWE-20 CVE-2023-39382: Input verification vulnerability in the audio module. Successful exploitation of this vulnerability Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.
nvd
CVE-2023-39389P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-08-13
CVE-2023-39389 [HIGH] CWE-120 CVE-2023-39389: Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploita Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen unavailability.
nvd
Huawei Emui vulnerabilities | cvebase