cbcvebase.

Huawei Harmonyos vulnerabilities

1,111 known vulnerabilities affecting huawei/harmonyos.

Total CVEs
1,111
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL138HIGH539MEDIUM394LOW40

Vulnerabilities

Page 42 of 56
CVE-2021-39981P4MEDIUMCVSS 5.3v2.02022-01-03
CVE-2021-39981 [MEDIUM] CVE-2021-39981: Chang Lian application has a vulnerability which can be maliciously exploited to hide the calling nu Chang Lian application has a vulnerability which can be maliciously exploited to hide the calling number.Successful exploitation of this vulnerability allows you to make an anonymous call.
nvd
CVE-2023-46755P4MEDIUMCVSS 5.3v2.0.0v2.0.1+2 more2023-11-08
CVE-2023-46755 [MEDIUM] CWE-284 CVE-2023-46755: Vulnerability of input parameters being not strictly verified in the input. Successful exploitation Vulnerability of input parameters being not strictly verified in the input. Successful exploitation of this vulnerability may cause the launcher to restart.
nvd
CVE-2023-34156P4MEDIUMCVSS 5.3v3.1.0v3.0.0+3 more2023-06-19
CVE-2023-34156 [MEDIUM] CWE-384 CVE-2023-34156: Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploita Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploitation of this vulnerability may cause services to be denied.
nvd
CVE-2023-46764P4MEDIUMCVSS 5.3v2.0.0v2.0.1+4 more2023-11-08
CVE-2023-46764 [MEDIUM] CWE-15 CVE-2023-46764: Unauthorized startup vulnerability of background apps. Successful exploitation of this vulnerability Unauthorized startup vulnerability of background apps. Successful exploitation of this vulnerability may cause background apps to start maliciously.
nvd
CVE-2023-44094P4MEDIUMCVSS 5.3v2.0v2.0.1+5 more2023-10-11
CVE-2023-44094 [MEDIUM] CWE-843 CVE-2023-44094: Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerab Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the device to restart.
nvd
CVE-2023-3456P4MEDIUMCVSS 5.3v2.0v2.0.1+5 more2023-07-06
CVE-2023-3456 [MEDIUM] CWE-20 CVE-2023-3456: Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation of Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-46756P4MEDIUMCVSS 5.3v2.0.0v2.0.1+4 more2023-11-08
CVE-2023-46756 [MEDIUM] CWE-269 CVE-2023-46756: Permission control vulnerability in the window management module. Successful exploitation of this vu Permission control vulnerability in the window management module. Successful exploitation of this vulnerability may cause malicious pop-up windows.
nvd
CVE-2022-44553P4MEDIUMCVSS 5.3v2.0v2.1+1 more2022-11-09
CVE-2022-44553 [MEDIUM] CWE-20 CVE-2022-44553: The HiView module has a vulnerability of not filtering third-party apps out when the HiView module t The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically.
nvd
CVE-2022-48495P4MEDIUMCVSS 5.3v3.1.0v3.0.0+2 more2023-06-19
CVE-2022-48495 [MEDIUM] CWE-863 CVE-2022-48495: Vulnerability of unauthorized access to foreground app information.Successful exploitation of this v Vulnerability of unauthorized access to foreground app information.Successful exploitation of this vulnerability may cause foreground app information to be obtained.
nvd
CVE-2022-44560P4MEDIUMCVSS 5.3v2.0v3.0.02022-11-09
CVE-2022-44560 [MEDIUM] CWE-601 CVE-2022-44560: The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnera The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified.
nvd
CVE-2022-48488P4MEDIUMCVSS 5.3v3.1.0v3.0.0+3 more2023-06-19
CVE-2022-48488 [MEDIUM] CWE-863 CVE-2022-48488: Vulnerability of bypassing the default desktop security controls.Successful exploitation of this vul Vulnerability of bypassing the default desktop security controls.Successful exploitation of this vulnerability may cause unauthorized modifications to the desktop.
nvd
CVE-2022-48296P4MEDIUMCVSS 5.3v2.0v2.1+2 more2023-02-09
CVE-2022-48296 [MEDIUM] CWE-281 CVE-2022-48296: The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerabi The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerability may cause users to receive broadcasts from malicious apps, conveying false alarm information about external storage devices.
nvd
CVE-2023-41304P4MEDIUMCVSS 5.3v3.0.0v3.1.0+1 more2023-10-11
CVE-2023-41304 [MEDIUM] CWE-754 CVE-2023-41304: Parameter verification vulnerability in the window module.Successful exploitation of this vulnerabil Parameter verification vulnerability in the window module.Successful exploitation of this vulnerability may cause the size of an app window to be adjusted to that of a floating window.
nvd
CVE-2023-52717P4MEDIUMCVSS 5.3v3.0.0v3.1.0+1 more2024-04-07
CVE-2023-52717 [MEDIUM] CWE-276 CVE-2023-52717: Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-39387P4MEDIUMCVSS 5.3v2.0.0v2.0.1+3 more2023-08-13
CVE-2023-39387 [MEDIUM] CWE-264 CVE-2023-39387: Vulnerability of permission control in the window management module. Successful exploitation of this Vulnerability of permission control in the window management module. Successful exploitation of this vulnerability may cause malicious pop-up windows.
nvd
CVE-2025-68963P4MEDIUMCVSS 5.3v4.3.12026-01-14
CVE-2025-68963 [MEDIUM] CWE-521 CVE-2025-68963: Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-48902P4MEDIUMCVSS 6.6v2.0.0v2.1.0+5 more2025-06-06
CVE-2025-48902 [MEDIUM] CWE-118 CVE-2025-48902: Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2022-48354P4MEDIUMCVSS 6.5v2.0v2.1.0+3 more2023-03-27
CVE-2022-48354 [MEDIUM] CWE-787 CVE-2022-48354: The Bluetooth module has a heap out-of-bounds write vulnerability. Successful exploitation of this v The Bluetooth module has a heap out-of-bounds write vulnerability. Successful exploitation of this vulnerability can cause the Bluetooth process to crash.
nvd
CVE-2025-54623P4MEDIUMCVSS 6.5v5.0.1v5.0.2+1 more2025-08-06
CVE-2025-54623 [MEDIUM] CWE-680 CVE-2025-54623: Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of thi Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-52385P4MEDIUMCVSS 6.2v3.0.0v3.1.0+1 more2024-04-08
CVE-2023-52385 [MEDIUM] CWE-20 CVE-2023-52385: Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulner Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
Huawei Harmonyos vulnerabilities | cvebase