VendorsHuaweiharmonyosany version
Vulnerabilities

Huawei Harmonyos any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

159CVEs
CVE-2021-37134
Location-related APIs exists a Race Condition vulnerability.Successful exploitation of this vulnerability may use Higher Permissions for invoking the interface of location-related components.
Published 2022-01-03 · Modified
8.1EPSS 0.005
CVE-2021-37097
There is a Code Injection vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to system restart.
Published 2021-12-08 · Modified
7.8EPSS 0.007
CVE-2021-37037
There is an Invalid address access vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the device to restart.
Published 2021-12-08 · Modified
7.8EPSS 0.007
CVE-2021-39973
There is a Null pointer dereference in Smartphones.Successful exploitation of this vulnerability may cause the kernel to break down.
Published 2022-01-03 · Modified
7.8EPSS 0.007
CVE-2021-39998
There is Vulnerability of APIs being concurrently called for multiple times in HwConnectivityExService a in smartphones. Successful exploitation of this vulnerability may cause the system to crash and restart.
Published 2022-01-07 · Modified
7.8EPSS 0.007
CVE-2021-37077
There is a NULL Pointer Dereference vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to kernel crash.
Published 2021-12-07 · Modified
7.8EPSS 0.007
CVE-2021-37057
There is a Improper Validation of Array Index vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to restart the phone.
Published 2021-12-07 · Modified
7.8EPSS 0.007
CVE-2021-37089
There is a Incomplete Cleanup vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to kernel restart.
Published 2021-12-07 · Modified
7.8EPSS 0.007
CVE-2021-22423
A component of the HarmonyOS has a Out-of-bounds Write Vulnerability. Local attackers may exploit this vulnerability to cause integer overflow.
Published 2021-08-03 · Modified
7.8EPSS 0.002
CVE-2021-22425
A component of the HarmonyOS has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevating Privileges.
Published 2021-08-03 · Modified
7.8EPSS 0.002
CVE-2021-40014
The bone voice ID trusted application (TA) has a heap overflow vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.010
CVE-2021-40032
The bone voice ID TA has a vulnerability in information management,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.009
CVE-2021-37078
There is a Uncaught Exception vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to remote Denial of Service.
Published 2021-12-07 · Modified
7.5EPSS 0.009
CVE-2021-40027
The bone voice ID TA has a vulnerability in calculating the buffer length,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-37126
Arbitrary file has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability .Successful exploitation of this vulnerability may cause the directory is traversed.
Published 2022-01-03 · Modified
7.5EPSS 0.008
CVE-2021-40035
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in smartphones. Successful exploitation of this vulnerability may affect function stability.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-40029
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in smartphones. Successful exploitation of this vulnerability may affect function stability.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-37100
There is a Improper Authentication vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to account authentication bypassed.
Published 2021-12-07 · Modified
7.5EPSS 0.007
CVE-2021-37054
There is an Identity spoofing and authentication bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2021-39970
HwPCAssistant has a Improper Input Validation vulnerability.Successful exploitation of this vulnerability may create any file with the system app permission.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-40022
The weaver module has a vulnerability in parameter type verification,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.007
CVE-2021-37110
There is a Timing design defects in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37113
There is a Privilege escalation vulnerability with the file system component in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37133
There is an Unauthorized file access vulnerability in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37075
There is a Credentials Management Errors vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to confidentiality affected.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2021-37052
There is an Exception log vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause address information leakage.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2021-39969
There is an Unauthorized file access vulnerability in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-39966
There is an Uninitialized AOD driver structure in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-39974
There is an Out-of-bounds read in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37111
There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability may cause memory exhaustion.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37117
There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37119
There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37053
There is a Service logic vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2021-37092
There is a Incomplete Cleanup vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2021-37067
There is a Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Confidentiality impacted.
Published 2021-12-07 · Modified
7.5EPSS 0.007
CVE-2021-39971
Password vault has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability could compromise confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37125
Arbitrary file has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability .Successful exploitation of this vulnerability may cause confidentiality is affected.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-40025
The eID module has a vulnerability that causes the memory to be used without being initialized,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.007
CVE-2021-40021
The eID module has an out-of-bounds memory write vulnerability,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.007
CVE-2021-40018
The eID module has a null pointer reference vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.007
← Prev2 / 4Next →