VendorsHuaweiharmonyosany version
Vulnerabilities

Huawei Harmonyos any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

159CVEs
CVE-2022-46762
The memory management module has a logic bypass vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-46314
The IPC module has defects introduced in the design process. Successful exploitation of this vulnerability may affect system availability.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2022-47976
The DMSDP module of the distributed hardware has a vulnerability that may cause imposter control connections.Successful exploitation of this vulnerability may disconnect normal service connections.
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-46321
The Wi-Fi module has a vulnerability in permission verification. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2022-46328
Some smartphones have the input validation vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2022-41599
The system service has a vulnerability that causes incorrect return values. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2021-46868
The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access.
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2021-46867
The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access.
Published 2023-01-06 · Modified
7.5EPSS 0.004
CVE-2022-46310
The TelephonyProvider module has a vulnerability in obtaining values.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2022-41596
The system tool has inconsistent serialization and deserialization. Successful exploitation of this vulnerability will cause unauthorized startup of components.
Published 2022-12-20 · Modified
7.5EPSS 0.004
CVE-2023-1694
The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.
Published 2023-05-20 · Modified
7.5EPSS 0.004
CVE-2023-1693
The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.
Published 2023-05-20 · Modified
7.5EPSS 0.004
CVE-2022-46311
The contacts component has a free (undefined) provider vulnerability. Successful exploitation of this vulnerability may affect data integrity.
Published 2022-12-20 · Modified
7.5EPSS 0.003
CVE-2021-37050
There is a Missing sensitive data encryption vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2021-12-08 · Modified
7.5EPSS 0.003
CVE-2022-46312
The application management module has a vulnerability in permission verification. Successful exploitation of this vulnerability causes unexpected clear of device applications.
Published 2022-12-20 · Modified
7.5EPSS 0.003
CVE-2022-46761
The system has a vulnerability that may cause dynamic hiding and restoring of app icons.Successful exploitation of this vulnerability may cause malicious hiding of app icons.
Published 2023-01-06 · Modified
7.5EPSS 0.003
CVE-2021-37069
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
Published 2021-12-08 · Modified
7.4EPSS 0.005
CVE-2021-37085
There is a Encoding timing vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to denial of service.
Published 2021-12-07 · Modified
7.1EPSS 0.005
CVE-2021-37039
There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause Bluetooth DoS.
Published 2021-12-08 · Modified
6.5EPSS 0.003
CVE-2022-47974
The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation of this vulnerability may cause the Bluetooth process to restart.
Published 2023-01-06 · Modified
6.5EPSS 0.002
CVE-2021-37082
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to motionhub crash.
Published 2021-12-07 · Modified
5.9EPSS 0.004
CVE-2021-40037
There is a Vulnerability of accessing resources using an incompatible type (type confusion) in the MPTCP subsystem in smartphones. Successful exploitation of this vulnerability may cause the system to crash and restart.
Published 2022-01-07 · Modified
5.5EPSS 0.002
CVE-2021-22478
The interface of a certain HarmonyOS module has a UAF vulnerability. Successful exploitation of this vulnerability may lead to information leakage.
Published 2022-02-25 · Modified
5.5EPSS 0.002
CVE-2021-40045
There is a vulnerability of signature verification mechanism failure in system upgrade through recovery mode.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-02-09 · Modified
5.5EPSS 0.002
CVE-2021-22441
Some Huawei products have an integer overflow vulnerability. Successful exploitation of this vulnerability may lead to kernel crash.
Published 2022-02-25 · Modified
5.5EPSS 0.002
CVE-2021-22479
The interface of a certain HarmonyOS module has an invalid address access vulnerability. Successful exploitation of this vulnerability may lead to kernel crash.
Published 2022-02-25 · Modified
5.5EPSS 0.002
CVE-2021-40001
The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTime application to be unavailable.
Published 2022-01-07 · Modified
5.3EPSS 0.008
CVE-2021-40009
There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
5.3EPSS 0.007
CVE-2021-40003
HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
5.3EPSS 0.006
CVE-2021-37093
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.
Published 2021-12-08 · Modified
5.3EPSS 0.005
CVE-2021-37114
There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-37118
The HwNearbyMain module has a Improper Handling of Exceptional Conditions vulnerability.Successful exploitation of this vulnerability may lead to message leak.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-37132
PackageManagerService has a Permissions, Privileges, and Access Controls vulnerability .Successful exploitation of this vulnerability may cause that Third-party apps can obtain the complete list of Harmony apps without permission.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-37112
Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-37058
There is a Permissions,Privileges,and Access Controls vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user's nickname is maliciously tampered with.
Published 2021-12-07 · Modified
5.3EPSS 0.005
CVE-2022-46313
The sensor privacy module has an authentication vulnerability. Successful exploitation of this vulnerability may cause unavailability of the smartphone's camera and microphone.
Published 2022-12-20 · Modified
5.3EPSS 0.004
CVE-2022-46318
The HAware module has a function logic error. Successful exploitation of this vulnerability will affect the account removal function in Settings.
Published 2022-12-20 · Modified
5.3EPSS 0.003
CVE-2021-40015
There is a race condition vulnerability in the binder driver subsystem in the kernel.Successful exploitation of this vulnerability may affect kernel stability.
Published 2022-02-09 · Modified
4.7EPSS 0.001
CVE-2021-37073
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the detection result is tampered with.
Published 2021-12-07 · Modified
4.3EPSS 0.003
← Prev4 / 4