Huawei Oxfords-An00A Firmware vulnerabilities
4 known vulnerabilities affecting huawei/oxfords-an00a_firmware.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2021-22400MEDIUMCVSS 5.5v10.0.1.10\(c00e10r1p1\)v10.0.1.105\(c00e103r3p3\)+10 more2021-08-03
CVE-2021-22400 [MEDIUM] CWE-20 CVE-2021-22400: Some Huawei Smartphones has an insufficient input validation vulnerability due to the lack of parame
Some Huawei Smartphones has an insufficient input validation vulnerability due to the lack of parameter validation. An attacker may trick a user into installing a malicious APP. The app can modify specific parameters, causing the system to crash. Affected product include:OxfordS-AN00A 10.0.1.10(C00E10R1P1),10.0.1.105(C00E103R3P3),10.0.1.115(C00E110R3
nvd
CVE-2021-22440MEDIUMCVSS 4.6v10.1.0.223\(c00e210r5p1\)2021-07-13
CVE-2021-22440 [MEDIUM] CWE-22 CVE-2021-22440: There is a path traversal vulnerability in some Huawei products. The vulnerability is due to that th
There is a path traversal vulnerability in some Huawei products. The vulnerability is due to that the software uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the software does not properly validate the pathname. Successful exploit could allow t
nvd
CVE-2020-9235MEDIUMCVSS 5.5fixed in 10.1.0.212\(c00e210r5p1\)2020-09-03
CVE-2020-9235 [MEDIUM] CWE-20 CVE-2020-9235: Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 1
Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 10.1.0.231(C10E3R3P2),Versions earlier than 10.1.0.231(C185E3R5P1),Versions earlier than 10.1.0.231(C636E3R3P1);Versions earlier than 10.1.0.212(C432E10R3P4),Versions earlier than 10.1.0.213(C636E3R4P3),Versions earlier than 10.1.0.214(C10E5R4P3),Versions
nvd
CVE-2020-1878MEDIUMCVSS 5.5fixed in 10.0.1.160\(c00e160r4p1\)fixed in 10.0.1.152d\(c735e152r3p3\)2020-03-20
CVE-2020-1878 [MEDIUM] CWE-287 CVE-2020-1878: Huawei smartphone OxfordS-AN00A with versions earlier than 10.0.1.152D(C735E152R3P3),versions earlie
Huawei smartphone OxfordS-AN00A with versions earlier than 10.0.1.152D(C735E152R3P3),versions earlier than 10.0.1.160(C00E160R4P1) have an improper authentication vulnerability. Authentication to target component is improper when device performs an operation. Attackers exploit this vulnerability to obtain some information by loading malicious applicat
nvd