Huawei Harmonyos vulnerabilities
1,111 known vulnerabilities affecting huawei/harmonyos.
Total CVEs
1,111
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL138HIGH539MEDIUM394LOW40
Vulnerabilities
Page 41 of 56
CVE-2025-68967P4MEDIUMCVSS 5.5v6.0.02026-01-14
CVE-2025-68967 [MEDIUM] CWE-264 CVE-2025-68967: Vulnerability of improper permission control in the print module. Impact: Successful exploitation of
Vulnerability of improper permission control in the print module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-46587P4MEDIUMCVSS 5.5v5.0.02025-05-06
CVE-2025-46587 [MEDIUM] CWE-264 CVE-2025-46587: Permission control vulnerability in the media library module Impact: Successful exploitation of this
Permission control vulnerability in the media library module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-45448P4MEDIUMCVSS 5.5v4.0.0v4.2.0+1 more2024-09-04
CVE-2024-45448 [MEDIUM] CWE-1259 CVE-2024-45448: Page table protection configuration vulnerability in the trusted firmware module Impact: Successful
Page table protection configuration vulnerability in the trusted firmware module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-64314P4MEDIUMCVSS 5.5v5.1.02025-11-28
CVE-2025-64314 [MEDIUM] CWE-843 CVE-2025-64314: Permission control vulnerability in the memory management module. Impact: Successful exploitation of
Permission control vulnerability in the memory management module.
Impact: Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2025-58287P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58287 [MEDIUM] CWE-275 CVE-2025-58287: Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerabil
Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-58310P4MEDIUMCVSS 5.5v5.0.1v5.1.0+1 more2025-11-28
CVE-2025-58310 [MEDIUM] CWE-843 CVE-2025-58310: Permission control vulnerability in the distributed component. Impact: Successful exploitation of th
Permission control vulnerability in the distributed component.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-58283P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58283 [MEDIUM] CWE-264 CVE-2025-58283: Permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability
Permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-54654P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-54654 [MEDIUM] CWE-264 CVE-2025-54654: Permission control vulnerability in the Gallery module. Successful exploitation of this vulnerabilit
Permission control vulnerability in the Gallery module. Successful exploitation of this vulnerability may affect service confidentiality
nvd
CVE-2026-41980P4MEDIUMCVSS 5.5v6.1.0v6.0.02026-06-09
CVE-2026-41980 [MEDIUM] CWE-200 CVE-2026-41980: Permission control vulnerability in the file preview module. Impact: Successful exploitation of this
Permission control vulnerability in the file preview module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-58301P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58301 [MEDIUM] CWE-121 CVE-2025-58301: Buffer overflow vulnerability in the device management module. Successful exploitation of this vulne
Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-58300P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58300 [MEDIUM] CWE-121 CVE-2025-58300: Buffer overflow vulnerability in the device management module. Successful exploitation of this vulne
Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-58304P4MEDIUMCVSS 5.5v5.0.1v5.1.0+1 more2025-11-28
CVE-2025-58304 [MEDIUM] CWE-199 CVE-2025-58304: Permission control vulnerability in the file management module. Impact: Successful exploitation of t
Permission control vulnerability in the file management module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-58285P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58285 [MEDIUM] CWE-264 CVE-2025-58285: Permission control vulnerability in the media module. Successful exploitation of this vulnerability
Permission control vulnerability in the media module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2026-41971P4MEDIUMCVSS 5.5v6.0.0v5.1.02026-05-15
CVE-2026-41971 [MEDIUM] CWE-840 CVE-2026-41971: Permission control vulnerability in the security control module. Impact: Successful exploitation of
Permission control vulnerability in the security control module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2026-28548P4MEDIUMCVSS 5.5v2.0.0v3.1.0+2 more2026-03-05
CVE-2026-28548 [MEDIUM] CWE-269 CVE-2026-28548: Vulnerability of improper verification in the email application. Impact: Successful exploitation of
Vulnerability of improper verification in the email application. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2021-37114P4MEDIUMCVSS 5.3fixed in 2.02022-01-03
CVE-2021-37114 [MEDIUM] CWE-125 CVE-2021-37114: There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerabi
There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2021-37093P4MEDIUMCVSS 5.3fixed in 2.0v2.02021-12-08
CVE-2021-37093 [MEDIUM] CVE-2021-37093: There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of thi
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.
nvd
CVE-2021-37112P4MEDIUMCVSS 5.3fixed in 2.0v2.02022-01-03
CVE-2021-37112 [MEDIUM] CWE-668 CVE-2021-37112: Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful ex
Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.
nvd
CVE-2021-37058P4MEDIUMCVSS 5.3fixed in 2.0v2.02021-12-07
CVE-2021-37058 [MEDIUM] CVE-2021-37058: There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful
There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user's nickname is maliciously tampered with.
nvd
CVE-2023-4565P4MEDIUMCVSS 5.3v2.0.0v2.0.1+4 more2023-09-27
CVE-2023-4565 [MEDIUM] CWE-732 CVE-2023-4565: Broadcast permission control vulnerability in the framework module. Successful exploitation of this
Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may cause the hotspot feature to be unavailable.
nvd