cbcvebase.

Huawei Magic Ui vulnerabilities

276 known vulnerabilities affecting huawei/magic_ui.

Total CVEs
276
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL64HIGH164MEDIUM46LOW2

Vulnerabilities

Page 12 of 14
CVE-2021-37046P4HIGHCVSS 7.5v4.0.02021-12-07
CVE-2021-37046 [HIGH] CWE-401 CVE-2021-37046: There is a Memory leak vulnerability with the codec detection module in Huawei Smartphone.Successful There is a Memory leak vulnerability with the codec detection module in Huawei Smartphone.Successful exploitation of this vulnerability may cause the device to restart due to memory exhaustion.
nvd
CVE-2021-22483P4HIGHCVSS 7.5v3.1.1v4.0.02021-10-28
CVE-2021-22483 [HIGH] CVE-2021-22483: There is a issue of IP address spoofing in Huawei Smartphone. Successful exploitation of this vulner There is a issue of IP address spoofing in Huawei Smartphone. Successful exploitation of this vulnerability may cause DoS.
nvd
CVE-2021-36993P4HIGHCVSS 7.5v3.1.1v4.0.02021-10-28
CVE-2021-36993 [HIGH] CWE-401 CVE-2021-36993: There is a Memory leaks vulnerability in Huawei Smartphone.Successful exploitation of this vulnerabi There is a Memory leaks vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
nvd
CVE-2022-39005P4HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39005 [HIGH] CWE-401 CVE-2022-39005: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
nvd
CVE-2022-39004P4HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39004 [HIGH] CWE-401 CVE-2022-39004: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
nvd
CVE-2021-22334P4HIGHCVSS 7.4v3.1.1v4.0.02021-06-03
CVE-2021-22334 [HIGH] CVE-2021-22334: There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of t There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause app redirections.
nvd
CVE-2021-22386P4HIGHCVSS 7.0v4.0.02021-08-10
CVE-2021-22386 [HIGH] CWE-415 CVE-2021-22386: A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit th A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.
nvd
CVE-2021-22437P4HIGHCVSS 7.0v3.1.0v3.1.12022-02-25
CVE-2021-22437 [HIGH] CWE-190 CVE-2021-22437: There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploi There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulnerability may cause random address access.
nvd
CVE-2021-22316P4MEDIUMCVSS 6.8v3.1.1v4.0.02021-06-03
CVE-2021-22316 [MEDIUM] CWE-306 CVE-2021-22316: There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attacker There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and functional availability.
nvd
CVE-2021-40055P4MEDIUMCVSS 5.9v3.0.0v3.1.0+2 more2022-03-10
CVE-2021-40055 [MEDIUM] CVE-2021-40055: There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Su There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
nvd
CVE-2022-34741P4MEDIUMCVSS 6.5v4.0.02022-07-12
CVE-2022-34741 [MEDIUM] CWE-120 CVE-2022-34741: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2022-34740P4MEDIUMCVSS 6.5v4.0.02022-07-12
CVE-2022-34740 [MEDIUM] CWE-120 CVE-2022-34740: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2021-40016P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-07-12
CVE-2021-40016 [MEDIUM] CVE-2021-40016: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.
nvd
CVE-2021-40059P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-03-10
CVE-2021-40059 [MEDIUM] CWE-276 CVE-2021-40059: There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vul There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2021-40009P4MEDIUMCVSS 5.3v4.0.02022-01-10
CVE-2021-40009 [MEDIUM] CWE-787 CVE-2021-40009: There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitat There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2021-40013P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-07-12
CVE-2021-40013 [MEDIUM] CVE-2021-40013: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.
nvd
CVE-2022-39006P4MEDIUMCVSS 5.9v4.0.02022-09-16
CVE-2022-39006 [MEDIUM] CWE-362 CVE-2022-39006: The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
nvd
CVE-2020-9138P4MEDIUMCVSS 5.3v2.1.1v3.0.0+2 more2021-01-13
CVE-2020-9138 [MEDIUM] CWE-787 CVE-2020-9138: There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability can cause process exceptions during updating.
nvd
CVE-2020-9143P4MEDIUMCVSS 5.3v2.1.1v3.0.0+2 more2021-01-13
CVE-2020-9143 [MEDIUM] CWE-306 CVE-2020-9143: There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure.
nvd
CVE-2021-46811P4MEDIUMCVSS 5.3v3.1.0v3.1.1+1 more2022-06-13
CVE-2021-46811 [MEDIUM] CWE-276 CVE-2021-46811: HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnera HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information.
nvd
Huawei Magic Ui vulnerabilities | cvebase