Huawei Emui vulnerabilities

820 known vulnerabilities affecting huawei/emui.

Total CVEs
820
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH461MEDIUM193LOW18

Vulnerabilities

Page 9 of 41
CVE-2024-30418HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30418 [HIGH] CWE-280 CVE-2024-30418: Vulnerability of insufficient permission verification in the app management module. Impact: Successf Vulnerability of insufficient permission verification in the app management module. Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52716HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2023-52716 [HIGH] CWE-269 CVE-2023-52716: Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module. I Vulnerability of starting activities in the background in the ActivityManagerService (AMS) module. Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2024-30417HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30417 [HIGH] CWE-22 CVE-2024-30417: Path traversal vulnerability in the Bluetooth-based sharing module. Impact: Successful exploitation Path traversal vulnerability in the Bluetooth-based sharing module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2024-30416HIGHCVSS 7.5v12.0.0v13.0.02024-04-07
CVE-2024-30416 [HIGH] CWE-416 CVE-2024-30416: Use After Free (UAF) vulnerability in the underlying driver module. Impact: Successful exploitation Use After Free (UAF) vulnerability in the underlying driver module. Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52717MEDIUMCVSS 5.3v12.0.0v13.0.02024-04-07
CVE-2023-52717 [MEDIUM] CWE-276 CVE-2023-52717: Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability.
cvelistv5nvd
CVE-2023-52370CRITICALCVSS 9.8v12.0.0v13.0.02024-02-18
CVE-2023-52370 [CRITICAL] CWE-120 CVE-2023-52370: Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vuln Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file access.
cvelistv5nvd
CVE-2023-52369CRITICALCVSS 9.1v12.0.0v13.0.02024-02-18
CVE-2023-52369 [CRITICAL] CWE-787 CVE-2023-52369: Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may aff Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may affect service availability and integrity.
cvelistv5nvd
CVE-2023-52381CRITICALCVSS 9.8v12.0.0v13.0.02024-02-18
CVE-2023-52381 [CRITICAL] CWE-94 CVE-2023-52381: Script injection vulnerability in the email module.Successful exploitation of this vulnerability may Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
cvelistv5nvd
CVE-2023-52378CRITICALCVSS 9.8v13.0.02024-02-18
CVE-2023-52378 [CRITICAL] CWE-693 CVE-2023-52378: Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause features to perform abnormally.
cvelistv5nvd
CVE-2023-52372HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52372 [HIGH] CWE-20 CVE-2023-52372: Vulnerability of input parameter verification in the motor module.Successful exploitation of this vu Vulnerability of input parameter verification in the motor module.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52097HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52097 [HIGH] CWE-200 CVE-2023-52097: Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploit Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52374HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52374 [HIGH] CWE-863 CVE-2023-52374: Permission control vulnerability in the package management module.Successful exploitation of this vu Permission control vulnerability in the package management module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52373HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52373 [HIGH] CWE-281 CVE-2023-52373: Vulnerability of permission verification in the content sharing pop-up module.Successful exploitatio Vulnerability of permission verification in the content sharing pop-up module.Successful exploitation of this vulnerability may cause unauthorized file sharing.
cvelistv5nvd
CVE-2023-52357HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52357 [HIGH] CWE-502 CVE-2023-52357: Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploi Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52376HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52376 [HIGH] CWE-212 CVE-2023-52376: Information management vulnerability in the Gallery module.Successful exploitation of this vulnerabi Information management vulnerability in the Gallery module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2023-52367HIGHCVSS 7.7v12.0.0v13.0.02024-02-18
CVE-2023-52367 [HIGH] CWE-284 CVE-2023-52367: Vulnerability of improper access control in the media library module.Successful exploitation of this Vulnerability of improper access control in the media library module.Successful exploitation of this vulnerability may affect service availability and integrity.
cvelistv5nvd
CVE-2023-52366HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52366 [HIGH] CWE-120 CVE-2023-52366: Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform abnormally.
cvelistv5nvd
CVE-2023-52375HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2023-52375 [HIGH] CWE-284 CVE-2023-52375: Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
cvelistv5nvd
CVE-2023-52387HIGHCVSS 7.5v13.0.02024-02-18
CVE-2023-52387 [HIGH] CWE-664 CVE-2023-52387: Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may af Resource reuse vulnerability in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd
CVE-2022-48621HIGHCVSS 7.5v12.0.0v13.0.02024-02-18
CVE-2022-48621 [HIGH] CWE-306 CVE-2022-48621: Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploi Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.
cvelistv5nvd