Huawei Emui vulnerabilities
831 known vulnerabilities affecting huawei/emui.
Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19
Vulnerabilities
Page 28 of 42
CVE-2021-37030P3HIGHCVSS 7.5v9.1.0v9.1.1+4 more2021-11-23
CVE-2021-37030 [HIGH] CWE-276 CVE-2021-37030: There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this v
There is an Improper permission vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
nvd
CVE-2022-37004P3HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-08-10
CVE-2022-37004 [HIGH] CVE-2022-37004: The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successf
The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2022-37007P3HIGHCVSS 7.5v11.0.0v12.0.02022-08-10
CVE-2022-37007 [HIGH] CWE-125 CVE-2022-37007: The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnera
The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2021-40034P3HIGHCVSS 7.5v10.1.0v10.1.1+2 more2022-08-10
CVE-2021-40034 [HIGH] CVE-2021-40034: The video framework has the memory overwriting vulnerability caused by addition overflow. Successful
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2023-46772P3HIGHCVSS 7.5v11.0.12023-11-08
CVE-2023-46772 [HIGH] CWE-787 CVE-2023-46772: Vulnerability of parameters being out of the value range in the QMI service module. Successful explo
Vulnerability of parameters being out of the value range in the QMI service module. Successful exploitation of this vulnerability may cause errors in reading file data.
nvd
CVE-2022-48356P3HIGHCVSS 7.5v12.0.02023-03-27
CVE-2022-48356 [HIGH] CWE-20 CVE-2022-48356: The facial recognition module has a vulnerability in input parameter verification. Successful exploi
The facial recognition module has a vulnerability in input parameter verification. Successful exploitation of this vulnerability may cause failed facial recognition.
nvd
CVE-2022-46317P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-46317 [HIGH] CWE-125 CVE-2022-46317: The power consumption module has an out-of-bounds read vulnerability. Successful exploitation of thi
The power consumption module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-44554P3HIGHCVSS 7.5v12.0.02022-11-09
CVE-2022-44554 [HIGH] CWE-276 CVE-2022-44554: The power module has a vulnerability in permission verification. Successful exploitation of this vul
The power module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause abnormal status of a module on the device.
nvd
CVE-2023-34155P3HIGHCVSS 7.5v13.0.0vunspecified2023-06-19
CVE-2023-34155 [HIGH] CVE-2023-34155: Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this v
Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-34166P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-06-19
CVE-2023-34166 [HIGH] CWE-400 CVE-2023-34166: Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitati
Vulnerability of system restart triggered by abnormal callbacks passed to APIs.Successful exploitation of this vulnerability may cause the system to restart.
nvd
CVE-2021-46881P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46881 [HIGH] CWE-120 CVE-2021-46881: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46883P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46883 [HIGH] CWE-120 CVE-2021-46883: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46882P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46882 [HIGH] CWE-120 CVE-2021-46882: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46884P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46884 [HIGH] CWE-120 CVE-2021-46884: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46886P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46886 [HIGH] CWE-120 CVE-2021-46886: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-46885P3HIGHCVSS 7.5v10.1.0v10.1.1+3 more2023-05-26
CVE-2021-46885 [HIGH] CWE-120 CVE-2021-46885: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-39396P3HIGHCVSS 7.5v13.0.02023-08-13
CVE-2023-39396 [HIGH] CWE-125 CVE-2023-39396: Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may
Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-52113P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2024-01-16
CVE-2023-52113 [HIGH] CWE-400 CVE-2023-52113: launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this v
launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-39382P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-08-13
CVE-2023-39382 [HIGH] CWE-20 CVE-2023-39382: Input verification vulnerability in the audio module. Successful exploitation of this vulnerability
Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.
nvd
CVE-2023-39389P3HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-08-13
CVE-2023-39389 [HIGH] CWE-120 CVE-2023-39389: Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploita
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen unavailability.
nvd