Huawei Emui vulnerabilities
820 known vulnerabilities affecting huawei/emui.
Total CVEs
820
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH461MEDIUM193LOW18
Vulnerabilities
Page 9 of 41
CVE-2024-30418HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30418 [HIGH] CWE-280 CVE-2024-30418: Vulnerability of insufficient permission verification in the app management module.
Impact: Successf
Vulnerability of insufficient permission verification in the app management module.
Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52716HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2023-52716 [HIGH] CWE-269 CVE-2023-52716: Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module.
I
Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module.
Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2024-30417HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30417 [HIGH] CWE-22 CVE-2024-30417: Path traversal vulnerability in the Bluetooth-based sharing module.
Impact: Successful exploitation
Path traversal vulnerability in the Bluetooth-based sharing module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2024-30416HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30416 [HIGH] CWE-416 CVE-2024-30416: Use After Free (UAF) vulnerability in the underlying driver module.
Impact: Successful exploitation
Use After Free (UAF) vulnerability in the underlying driver module.
Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52717MEDIUMCVSS 5.3v12.0.0v13.0.02024-04-07
CVE-2023-52717 [MEDIUM] CWE-276 CVE-2023-52717: Permission verification vulnerability in the lock screen module.
Impact: Successful exploitation of
Permission verification vulnerability in the lock screen module.
Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52370CRITICALCVSS 9.8v12.0.0v13.0.02024-02-18
CVE-2023-52370 [CRITICAL] CWE-120 CVE-2023-52370: Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vuln
Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file access.
cvelistv5nvd
CVE-2023-52369CRITICALCVSS 9.1v12.0.0v13.0.02024-02-18
CVE-2023-52369 [CRITICAL] CWE-787 CVE-2023-52369: Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may aff
Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may affect service availability and integrity.
cvelistv5nvd
CVE-2023-52381CRITICALCVSS 9.8v12.0.0v13.0.02024-02-18
CVE-2023-52381 [CRITICAL] CWE-94 CVE-2023-52381: Script injection vulnerability in the email module.Successful exploitation of this vulnerability may
Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
cvelistv5nvd
CVE-2023-52378CRITICALCVSS 9.8v13.0.02024-02-18
CVE-2023-52378 [CRITICAL] CWE-693 CVE-2023-52378: Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation
Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause features to perform abnormally.
cvelistv5nvd
CVE-2023-52372HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52372 [HIGH] CWE-20 CVE-2023-52372: Vulnerability of input parameter verification in the motor module.Successful exploitation of this vu
Vulnerability of input parameter verification in the motor module.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52097HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52097 [HIGH] CWE-200 CVE-2023-52097: Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploit
Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52374HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52374 [HIGH] CWE-863 CVE-2023-52374: Permission control vulnerability in the package management module.Successful exploitation of this vu
Permission control vulnerability in the package management module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52373HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52373 [HIGH] CWE-281 CVE-2023-52373: Vulnerability of permission verification in the content sharing pop-up module.Successful exploitatio
Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file sharing.
cvelistv5nvd
CVE-2023-52357HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52357 [HIGH] CWE-502 CVE-2023-52357: Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploi
Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52376HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52376 [HIGH] CWE-212 CVE-2023-52376: Information management vulnerability in the Gallery module.Successful exploitation of this vulnerabi
Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52367HIGHCVSS 7.7v12.0.0v13.0.02024-02-18
CVE-2023-52367 [HIGH] CWE-284 CVE-2023-52367: Vulnerability of improper access control in the media library module.Successful exploitation of this
Vulnerability of improper access control in the media library module.Successful exploitation of this vulnerability may affect service availability and integrity.
cvelistv5nvd
CVE-2023-52366HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52366 [HIGH] CWE-120 CVE-2023-52366: Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of
Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform abnormally.
cvelistv5nvd
CVE-2023-52375HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52375 [HIGH] CWE-284 CVE-2023-52375: Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this
Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52387HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52387 [HIGH] CWE-664 CVE-2023-52387: Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may af
Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2022-48621HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2022-48621 [HIGH] CWE-306 CVE-2022-48621: Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploi
Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd