cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 9 of 42
CVE-2021-46742P3CRITICALCVSS 9.1v10.1.0v10.1.1+3 more2022-04-11
CVE-2021-46742 [CRITICAL] CVE-2021-46742: The multi-window module has a vulnerability of unauthorized insertion and tampering of Settings.Secu The multi-window module has a vulnerability of unauthorized insertion and tampering of Settings.Secure data.Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2021-22373P3CRITICALCVSS 9.1v10.1.1v11.0.02021-06-30
CVE-2021-22373 [CRITICAL] CVE-2021-22373: There is a Defects Introduced in the Design Process Vulnerability in Huawei Smartphone. Successful e There is a Defects Introduced in the Design Process Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.
nvd
CVE-2022-22260P3CRITICALCVSS 9.1v12.0.02022-05-13
CVE-2022-22260 [CRITICAL] CWE-416 CVE-2022-22260: The kernel module has a UAF vulnerability.Successful exploitation of this vulnerability will affect The kernel module has a UAF vulnerability.Successful exploitation of this vulnerability will affect data integrity and availability.
nvd
CVE-2020-9141P3CRITICALCVSS 9.1v10.1.0v10.1.12021-01-13
CVE-2020-9141 [CRITICAL] CWE-269 CVE-2020-9141: There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploit There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability can cause information disclosure and malfunctions due to insufficient verification of data authenticity.
nvd
CVE-2021-40044P3HIGHCVSS 8.8v10.1.0v10.1.1+3 more2022-02-09
CVE-2021-40044 [HIGH] CVE-2021-40044: There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations.
nvd
CVE-2021-40050P3CRITICALCVSS 9.8v10.1.0v10.1.1+3 more2022-03-10
CVE-2021-40050 [CRITICAL] CWE-125 CVE-2021-40050: There is an out-of-bounds read vulnerability in the IFAA module. Successful exploitation of this vul There is an out-of-bounds read vulnerability in the IFAA module. Successful exploitation of this vulnerability may cause stack overflow.
nvd
CVE-2022-22256P3HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-04-11
CVE-2022-22256 [HIGH] CVE-2022-22256: The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2021-37038P3HIGHCVSS 7.5v10.1.12021-12-07
CVE-2021-37038 [HIGH] CVE-2021-37038: There is an Improper access control vulnerability in Huawei Smartphone.Successful exploitation of th There is an Improper access control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2021-40026P3HIGHCVSS 7.5v11.0.0v12.0.02022-01-10
CVE-2021-40026 [HIGH] CWE-787 CVE-2021-40026: There is a Heap-based buffer overflow vulnerability in the AOD module in smartphones. Successful exp There is a Heap-based buffer overflow vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2022-41591P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-41591 [HIGH] CWE-22 CVE-2022-41591: The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability causes unauthorized access to other system files.
nvd
CVE-2021-36986P3CRITICALCVSS 9.8v10.1.1v11.0.02021-10-28
CVE-2021-36986 [CRITICAL] CVE-2021-36986: There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation o There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
nvd
CVE-2021-36989P3CRITICALCVSS 9.8v10.1.1v11.0.02021-10-28
CVE-2021-36989 [CRITICAL] CWE-276 CVE-2021-36989: There is a Kernel crash vulnerability in Huawei Smartphone.Successful exploitation of this vulnerabi There is a Kernel crash vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
nvd
CVE-2023-37239P3HIGHCVSS 7.5v12.0.1v13.0.02023-07-06
CVE-2023-37239 [HIGH] CWE-200 CVE-2023-37239: Format string vulnerability in the distributed file system. Attackers who bypass the selinux permis Format string vulnerability in the distributed file system. Attackers who bypass the selinux permission can exploit this vulnerability to crash the program.
nvd
CVE-2021-36990P3CRITICALCVSS 9.8v10.1.1v11.0.02021-10-28
CVE-2021-36990 [CRITICAL] CWE-276 CVE-2021-36990: There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation o There is a vulnerability of tampering with the kernel in Huawei Smartphone.Successful exploitation of this vulnerability may escalate permissions.
nvd
CVE-2022-48519P3HIGHCVSS 7.5v12.0.0v12.0.12023-07-06
CVE-2022-48519 [HIGH] CWE-200 CVE-2022-48519: Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerabil Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2022-48520P3HIGHCVSS 7.5v12.0.0v12.0.12023-07-06
CVE-2022-48520 [HIGH] CWE-200 CVE-2022-48520: Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerabil Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2023-44115P3HIGHCVSS 7.5v12.0.0v12.0.1+1 more2023-11-08
CVE-2023-44115 [HIGH] CWE-200 CVE-2023-44115: Vulnerability of improper permission control in the Booster module. Impact: Successful exploitation Vulnerability of improper permission control in the Booster module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2022-39011P3HIGHCVSS 7.5v12.0.02022-10-14
CVE-2022-39011 [HIGH] CWE-693 CVE-2022-39011: The HISP module has a vulnerability of bypassing the check of the data transferred in the kernel spa The HISP module has a vulnerability of bypassing the check of the data transferred in the kernel space.Successful exploitation of this vulnerability may cause unauthorized access to the HISP module.
nvd
CVE-2023-49240P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-12-06
CVE-2023-49240 [HIGH] CWE-601 CVE-2023-49240: Unauthorized access vulnerability in the launcher module. Successful exploitation of this vulnerabil Unauthorized access vulnerability in the launcher module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2022-48515P3HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-07-06
CVE-2022-48515 [HIGH] CWE-269 CVE-2022-48515: Vulnerability of inappropriate permission control in Nearby. Successful exploitation of this vulnera Vulnerability of inappropriate permission control in Nearby. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
Huawei Emui vulnerabilities | cvebase