VendorsHuaweiharmonyos5.0.0
Vulnerabilities

Huawei Harmonyos 5.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

100CVEs
CVE-2024-58115
Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.002
CVE-2024-57956
Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56443
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-54121
Startup control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-56446
Vulnerability of variables not being initialized in the notification module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-51523
Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
7.5EPSS 0.002
CVE-2024-57955
Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56435
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-54105
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-54112
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2024-57962
Vulnerability of incomplete verification information in the VPN service module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56436
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-54103
Vulnerability of improper access control in the album module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2024-54114
Out-of-bounds access vulnerability in playback in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-56439
Access control vulnerability in the identity authentication module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.001
CVE-2024-54111
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.001
CVE-2025-46585
Out-of-bounds array read/write vulnerability in the kernel module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-05-06 · Analyzed
7.5EPSS 0.001
CVE-2024-56451
Integer overflow vulnerability during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.3EPSS 0.001
CVE-2025-48909
Bypass vulnerability in the device management channel Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-06-06 · Analyzed
7.1EPSS 0.002
CVE-2025-46589
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Published 2025-05-06 · Analyzed
7.1EPSS 0.001
CVE-2025-31171
File read permission bypass vulnerability in the kernel file system module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-04-07 · Analyzed
6.8EPSS 0.001
CVE-2024-56453
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
6.8EPSS 0.001
CVE-2024-56456
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
6.8EPSS 0.001
CVE-2025-27521
Vulnerability of improper access permission in the process management module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-03-04 · Analyzed
6.8EPSS 0.001
CVE-2024-58048
Multi-thread problem vulnerability in the package management module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-03-04 · Analyzed
6.7EPSS 0.001
CVE-2025-46590
Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions.
Published 2025-05-06 · Analyzed
6.5EPSS 0.002
CVE-2024-51522
Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2024-58252
Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2025-46591
Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2024-51512
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2024-51511
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2024-51525
Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Modified
6.2EPSS 0.001
CVE-2025-48907
Deserialization vulnerability in the IPC module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.2EPSS 0.001
CVE-2024-51516
Permission control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to function abnormally.
Published 2024-11-05 · Modified
6.2EPSS 0.001
CVE-2025-46587
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2024-58050
Vulnerability of improper access permission in the HDC module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-03-04 · Analyzed
6.2EPSS 0.001
CVE-2025-48904
Vulnerability that cards can call unauthorized APIs in the FRS process Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.2EPSS 0.001
CVE-2024-58046
Permission management vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-03-04 · Analyzed
6.2EPSS 0.001
CVE-2024-54122
Concurrent variable access vulnerability in the ability module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-12-12 · Analyzed
6.2EPSS 0.001
CVE-2024-51515
Race condition vulnerability in the kernel network module Impact:Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
← Prev2 / 3Next →