cbcvebase.

Huawei Harmonyos vulnerabilities

1,111 known vulnerabilities affecting huawei/harmonyos.

Total CVEs
1,111
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL138HIGH539MEDIUM394LOW40

Vulnerabilities

Page 6 of 56
CVE-2022-48621P3HIGHCVSS 7.5v2.0.0v2.1.0+3 more2024-02-18
CVE-2022-48621 [HIGH] CWE-306 CVE-2022-48621: Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploi Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2022-46326P3CRITICALCVSS 9.8fixed in 2.0v2.02022-12-20
CVE-2022-46326 [CRITICAL] CWE-787 CVE-2022-46326: Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnera Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
nvd
CVE-2022-46325P3CRITICALCVSS 9.8fixed in 2.0v2.02022-12-20
CVE-2022-46325 [CRITICAL] CWE-787 CVE-2022-46325: Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerab Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
nvd
CVE-2022-46323P3CRITICALCVSS 9.8fixed in 2.0v2.02022-12-20
CVE-2022-46323 [CRITICAL] CWE-787 CVE-2022-46323: Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerab Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
nvd
CVE-2022-46324P3CRITICALCVSS 9.8fixed in 2.0v2.02022-12-20
CVE-2022-46324 [CRITICAL] CWE-787 CVE-2022-46324: Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnera Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
nvd
CVE-2021-22394P3CRITICALCVSS 9.1v2.02022-02-25
CVE-2021-22394 [CRITICAL] CWE-120 CVE-2021-22394: There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerabili There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerability may cause DoS of the apps during Multi-Screen Collaboration.
nvd
CVE-2021-37021P3CRITICALCVSS 9.1fixed in 2.0v2.02021-12-07
CVE-2021-37021 [CRITICAL] CWE-787 CVE-2021-37021: There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bounds read.
nvd
CVE-2021-37020P3CRITICALCVSS 9.1fixed in 2.0v2.02021-12-07
CVE-2021-37020 [CRITICAL] CWE-787 CVE-2021-37020: There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bounds read.
nvd
CVE-2021-37079P3CRITICALCVSS 9.1fixed in 2.0v2.02021-12-07
CVE-2021-37079 [CRITICAL] CWE-94 CVE-2021-37079: There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of t There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to delete arbitrary file by system_app permission.
nvd
CVE-2022-39008P3CRITICALCVSS 9.1v2.02022-09-16
CVE-2022-39008 [CRITICAL] CWE-502 CVE-2022-39008: The NFC module has bundle serialization/deserialization vulnerabilities. Successful exploitation of The NFC module has bundle serialization/deserialization vulnerabilities. Successful exploitation of this vulnerability may cause third-party apps to read and write files that are accessible only to system apps.
nvd
CVE-2022-48349P3CRITICALCVSS 9.1v2.0v2.0.1+3 more2023-03-27
CVE-2022-48349 [CRITICAL] CWE-290 CVE-2022-48349: The control component has a spoofing vulnerability. Successful exploitation of this vulnerability ma The control component has a spoofing vulnerability. Successful exploitation of this vulnerability may affect confidentiality and availability.
nvd
CVE-2022-48290P3CRITICALCVSS 9.1v3.0.02023-02-09
CVE-2022-48290 [CRITICAL] CWE-693 CVE-2022-48290: The phone-PC collaboration module has a logic bypass vulnerability. Successful exploitation of this The phone-PC collaboration module has a logic bypass vulnerability. Successful exploitation of this vulnerability may affect data confidentiality and integrity.
nvd
CVE-2023-5801P3CRITICALCVSS 9.1v2.0.0v3.0.0+1 more2023-11-08
CVE-2023-5801 [CRITICAL] CWE-290 CVE-2023-5801: Vulnerability of identity verification being bypassed in the face unlock module. Successful exploita Vulnerability of identity verification being bypassed in the face unlock module. Successful exploitation of this vulnerability will affect integrity and confidentiality.
nvd
CVE-2023-44107P3CRITICALCVSS 9.1v2.1.02023-10-11
CVE-2023-44107 [CRITICAL] CVE-2023-44107: Vulnerability of defects introduced in the design process in the screen projection module.Successfu Vulnerability of defects introduced in the design process in the screen projection module.Successful exploitation of this vulnerability may affect service availability and integrity.
nvd
CVE-2024-57958P3CRITICALCVSS 9.1v4.0.0v4.2.0+2 more2025-02-06
CVE-2024-57958 [CRITICAL] CWE-125 CVE-2024-57958: Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vu Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2021-40002P3HIGHCVSS 8.8fixed in 2.0v2.02022-01-10
CVE-2021-40002 [HIGH] CWE-787 CVE-2021-40002: The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulne The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result in malicious command execution at the remote end.
nvd
CVE-2021-40000P3HIGHCVSS 8.8fixed in 2.0v2.02022-01-10
CVE-2021-40000 [HIGH] CWE-787 CVE-2021-40000: The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulne The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result in malicious command execution at the remote end.
nvd
CVE-2021-37074P3HIGHCVSS 8.1fixed in 2.0v2.02021-12-08
CVE-2021-37074 [HIGH] CWE-362 CVE-2021-37074: There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnera There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user root privilege escalation.
nvd
CVE-2021-46740P3HIGHCVSS 7.5v2.02022-04-11
CVE-2021-46740 [HIGH] CWE-287 CVE-2021-46740: The device authentication service module has a defect vulnerability introduced in the design process The device authentication service module has a defect vulnerability introduced in the design process.Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2021-40036P3CRITICALCVSS 9.8fixed in 2.0vHarmonyOS 2.02022-06-13
CVE-2021-40036 [CRITICAL] CWE-787 CVE-2021-40036: The bone voice ID TA has a memory overwrite vulnerability. Successful exploitation of this vulnerabi The bone voice ID TA has a memory overwrite vulnerability. Successful exploitation of this vulnerability may result in malicious code execution.
nvd
Huawei Harmonyos vulnerabilities | cvebase