VendorsHuaweiemuiall versions
Vulnerabilities

Huawei EMUI

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

811CVEs
CVE-2021-22389
There is a Permission Control Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.
Published 2021-08-02 · Modified
9.8EPSS 0.007
CVE-2022-39009
The WLAN module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause third-party apps to affect WLAN functions.
Published 2022-09-16 · Modified
9.8EPSS 0.007
CVE-2022-39007
The location module has a vulnerability of bypassing permission verification.Successful exploitation of this vulnerability may cause privilege escalation.
Published 2022-09-16 · Modified
9.8EPSS 0.007
CVE-2022-38983
The BT Hfp Client module has a Use-After-Free (UAF) vulnerability.Successful exploitation of this vulnerability may result in arbitrary code execution.
Published 2022-10-14 · Modified
9.8EPSS 0.006
CVE-2021-40017
The HW_KEYMASTER module lacks the validity check of the key format. Successful exploitation of this vulnerability may result in out-of-bounds memory access.
Published 2022-09-16 · Modified
9.8EPSS 0.006
CVE-2022-39002
Double free vulnerability in the storage module. Successful exploitation of this vulnerability will cause the memory to be freed twice.
Published 2022-09-16 · Modified
9.8EPSS 0.006
CVE-2022-39000
The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vulnerability will cause malicious apps to automatically start upon system startup.
Published 2022-09-16 · Modified
9.8EPSS 0.006
CVE-2022-38999
The AOD module has the improper update of reference count vulnerability. Successful exploitation of this vulnerability may affect data integrity, confidentiality, and availability.
Published 2022-09-16 · Modified
9.8EPSS 0.006
CVE-2022-44558
The AMS module has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation.
Published 2022-11-09 · Modified
9.8EPSS 0.006
CVE-2022-44559
The AMS module has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation.
Published 2022-11-09 · Modified
9.8EPSS 0.006
CVE-2022-44562
The system framework layer has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation.
Published 2022-11-09 · Modified
9.8EPSS 0.006
CVE-2022-41580
The HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Published 2022-10-14 · Modified
9.8EPSS 0.006
CVE-2022-41578
The MPTCP module has an out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause root privilege escalation attacks implemented by modifying program information.
Published 2022-10-14 · Modified
9.8EPSS 0.006
CVE-2024-32991
Permission verification vulnerability in the wpa_supplicant module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
9.8EPSS 0.006
CVE-2023-46773
Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege escalation.
Published 2023-12-06 · Modified
9.8EPSS 0.005
CVE-2021-46851
The DRM module has a vulnerability in verifying the secure memory attributes. Successful exploitation of this vulnerability may cause abnormal video playback.
Published 2022-11-09 · Modified
9.8EPSS 0.005
CVE-2022-37002
The SystemUI module has a privilege escalation vulnerability. Successful exploitation of this vulnerability can cause malicious applications to pop up windows or run in the background.
Published 2022-08-09 · Modified
9.8EPSS 0.005
CVE-2022-37003
The AOD module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may cause permission escalation and unauthorized access to files.
Published 2022-08-09 · Modified
9.8EPSS 0.005
CVE-2022-46324
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-46319
Fingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation of this vulnerability may cause out-of-bounds write.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-48510
Input verification vulnerability in the AMS module. Successful exploitation of this vulnerability will cause unauthorized operations.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2022-46325
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-46320
The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may cause memory overwriting.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-46323
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-48512
Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of this vulnerability may cause the image decoding feature to perform abnormally.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2023-39405
Vulnerability of out-of-bounds parameter read/write in the Wi-Fi module. Successful exploitation of this vulnerability may cause other apps to be executed with escalated privileges.
Published 2023-08-13 · Modified
9.8EPSS 0.005
CVE-2022-46326
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2022-48511
Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions. Successful exploitation of this vulnerability may cause audio features to perform abnormally.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2021-46887
Lack of length check vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause out-of-bounds read.
Published 2023-05-26 · Modified
9.8EPSS 0.005
CVE-2022-48353
Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause kernel privilege escalation, which results in system service exceptions.
Published 2023-03-27 · Modified
9.8EPSS 0.005
CVE-2023-34159
Improper permission control vulnerability in the Notepad app.Successful exploitation of the vulnerability may lead to privilege escalation, which affects availability and confidentiality.
Published 2023-06-19 · Modified
9.8EPSS 0.005
CVE-2023-52378
Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-02-18 · Modified
9.8EPSS 0.005
CVE-2023-52370
Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause unauthorized file access.
Published 2024-02-18 · Analyzed
9.8EPSS 0.005
CVE-2023-52103
Buffer overflow vulnerability in the FLP module. Successful exploitation of this vulnerability may cause out-of-bounds read.
Published 2024-01-16 · Modified
9.8EPSS 0.005
CVE-2022-48513
Vulnerability of identity verification being bypassed in the Gallery module. Successful exploitation of this vulnerability may cause out-of-bounds access.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2021-46891
Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
Published 2023-07-05 · Modified
9.8EPSS 0.005
CVE-2022-44551
The iaware module has a vulnerability in thread security. Successful exploitation of this vulnerability will affect confidentiality, integrity, and availability.
Published 2022-11-09 · Modified
9.8EPSS 0.005
CVE-2023-37242
Vulnerability of commands from the modem being intercepted in the atcmdserver module. Attackers may exploit this vulnerability to rewrite the non-volatile random-access memory (NVRAM), or facilitate the exploitation of other vulnerabilities.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2022-46327
Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause privilege escalation, which results in system service exceptions.
Published 2022-12-20 · Modified
9.8EPSS 0.005
CVE-2021-46894
Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel privilege escalation.
Published 2023-07-06 · Modified
9.8EPSS 0.005
← Prev2 / 21Next →