VendorsHuaweiemui12.0.0
Vulnerabilities

Huawei EMUI 12.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

449CVEs
CVE-2021-46894
Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel privilege escalation.
Published 2023-07-06 · Modified
9.8EPSS 0.005
CVE-2023-52381
Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
Published 2024-02-18 · Analyzed
9.8EPSS 0.004
CVE-2023-41297
Vulnerability of defects introduced in the design process in the HiviewTunner module. Successful exploitation of this vulnerability may cause service hijacking.
Published 2023-09-25 · Modified
9.8EPSS 0.004
CVE-2023-44105
Vulnerability of permissions not being strictly verified in the window management module.Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2023-10-11 · Modified
9.8EPSS 0.004
CVE-2023-44116
Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
Published 2023-10-11 · Modified
9.8EPSS 0.004
CVE-2024-42037
Vulnerability of uncaught exceptions in the Graphics module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-08-08 · Analyzed
9.3EPSS 0.001
CVE-2021-46742
The multi-window module has a vulnerability of unauthorized insertion and tampering of Settings.Secure data.Successful exploitation of this vulnerability may affect the availability.
Published 2022-04-11 · Modified
9.1EPSS 0.007
CVE-2022-22260
The kernel module has a UAF vulnerability.Successful exploitation of this vulnerability will affect data integrity and availability.
Published 2022-05-13 · Modified
9.1EPSS 0.007
CVE-2022-31760
Dialog boxes can still be displayed even if the screen is locked in carrier-customized USSD services. Successful exploitation of this vulnerability may affect data integrity and confidentiality.
Published 2022-06-13 · Modified
9.1EPSS 0.007
CVE-2022-39008
The NFC module has bundle serialization/deserialization vulnerabilities. Successful exploitation of this vulnerability may cause third-party apps to read and write files that are accessible only to system apps.
Published 2022-09-16 · Modified
9.1EPSS 0.006
CVE-2022-34737
The application security module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may affect data integrity and confidentiality.
Published 2022-07-11 · Modified
9.1EPSS 0.006
CVE-2021-40019
Out-of-bounds heap read vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause out-of-bounds access.
Published 2022-09-16 · Modified
9.1EPSS 0.006
CVE-2022-38986
The HIPP module has a vulnerability of bypassing the check of the data transferred in the kernel space.Successful exploitation of this vulnerability may cause out-of-bounds access to the HIPP module and page table tampering, affecting device confidentiality and availability.
Published 2022-10-14 · Modified
9.1EPSS 0.006
CVE-2024-45443
Directory traversal vulnerability in the cust module Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2024-09-04 · Analyzed
9.1EPSS 0.005
CVE-2023-37245
Buffer overflow vulnerability in the modem pinctrl module. Successful exploitation of this vulnerability may affect the integrity and availability of the modem.
Published 2023-07-06 · Modified
9.1EPSS 0.005
CVE-2022-48349
The control component has a spoofing vulnerability. Successful exploitation of this vulnerability may affect confidentiality and availability.
Published 2023-03-27 · Modified
9.1EPSS 0.005
CVE-2023-39402
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.005
CVE-2023-39400
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.005
CVE-2023-39401
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.005
CVE-2022-41581
The HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Published 2022-10-14 · Modified
9.1EPSS 0.005
CVE-2021-46839
The HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Published 2022-10-14 · Modified
9.1EPSS 0.005
CVE-2021-46840
The HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Published 2022-10-14 · Modified
9.1EPSS 0.005
CVE-2021-46895
Vulnerability of defects introduced in the design process in the Multi-Device Task Center. Successful exploitation of this vulnerability will cause the hopped app to bypass the app lock and reset the device that initiates the hop.
Published 2023-08-13 · Modified
9.1EPSS 0.005
CVE-2023-52369
Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may affect service availability and integrity.
Published 2024-02-18 · Modified
9.1EPSS 0.004
CVE-2023-44118
Vulnerability of undefined permissions in the MeeTime module.Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2023-10-11 · Modified
9.1EPSS 0.004
CVE-2022-48312
The HwPCAssistant module has the out-of-bounds read/write vulnerability. Successful exploitation of this vulnerability may affect confidentiality and integrity.
Published 2023-04-16 · Modified
9.1EPSS 0.004
CVE-2023-39385
Vulnerability of configuration defects in the media module of certain products.. Successful exploitation of this vulnerability may cause unauthorized access.
Published 2023-08-13 · Modified
9.1EPSS 0.004
CVE-2023-52101
Component exposure vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect service availability and integrity.
Published 2024-01-16 · Modified
9.1EPSS 0.004
CVE-2023-39399
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.004
CVE-2023-39398
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.004
CVE-2023-39403
Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization.
Published 2023-08-13 · Modified
9.1EPSS 0.004
CVE-2024-30415
Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-07 · Analyzed
9.1EPSS 0.004
CVE-2023-52953
Path traversal vulnerability in the Medialibrary module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Published 2025-01-08 · Analyzed
9.1EPSS 0.003
CVE-2023-52538
Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-08 · Modified
9.1EPSS 0.003
CVE-2021-40044
There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations.
Published 2022-02-09 · Modified
8.8EPSS 0.003
CVE-2024-54098
Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2024-12-12 · Analyzed
8.5EPSS 0.002
CVE-2025-31175
Deserialization mismatch vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2025-04-07 · Analyzed
8.4EPSS 0.002
CVE-2024-32997
Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
8.4EPSS 0.001
CVE-2024-58044
Permission verification bypass vulnerability in the notification module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-03-04 · Analyzed
8.4EPSS 0.001
CVE-2025-58302
Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
8.4EPSS 0.001
← Prev2 / 12Next →