VendorsHuaweiharmonyosall versions
Vulnerabilities

Huawei Harmonyos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1050CVEs
CVE-2023-52367
Vulnerability of improper access control in the media library module.Successful exploitation of this vulnerability may affect service availability and integrity.
Published 2024-02-18 · Analyzed
7.7EPSS 0.001
CVE-2025-46588
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Published 2025-05-06 · Analyzed
7.7EPSS 0.001
CVE-2024-51510
Out-of-bounds access vulnerability in the logo module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
7.6EPSS 0.001
CVE-2025-53169
Vulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful exploitation of this vulnerability may allow the peer device to use the camera without user awareness.
Published 2025-07-07 · Analyzed
7.6EPSS 0.001
CVE-2021-40014
The bone voice ID trusted application (TA) has a heap overflow vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.010
CVE-2022-29793
There is a configuration defect in the activation lock of mobile phones.Successful exploitation of this vulnerability may affect application availability.
Published 2022-05-13 · Modified
7.5EPSS 0.009
CVE-2021-40032
The bone voice ID TA has a vulnerability in information management,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.009
CVE-2021-37078
There is a Uncaught Exception vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to remote Denial of Service.
Published 2021-12-07 · Modified
7.5EPSS 0.009
CVE-2022-39001
The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure.
Published 2022-09-16 · Modified
7.5EPSS 0.009
CVE-2021-40027
The bone voice ID TA has a vulnerability in calculating the buffer length,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2022-34742
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-07-11 · Modified
7.5EPSS 0.008
CVE-2021-40012
Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-07-11 · Modified
7.5EPSS 0.008
CVE-2021-37126
Arbitrary file has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability .Successful exploitation of this vulnerability may cause the directory is traversed.
Published 2022-01-03 · Modified
7.5EPSS 0.008
CVE-2021-40065
The communication module has a service logic error vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-04-11 · Modified
7.5EPSS 0.008
CVE-2021-40029
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in smartphones. Successful exploitation of this vulnerability may affect function stability.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-40035
There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in smartphones. Successful exploitation of this vulnerability may affect function stability.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-40011
There is an uncontrolled resource consumption vulnerability in the display module. Successful exploitation of this vulnerability may affect integrity.
Published 2022-01-07 · Modified
7.5EPSS 0.008
CVE-2021-40049
There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to sensitive system information being obtained without authorization.
Published 2022-03-07 · Modified
7.5EPSS 0.008
CVE-2021-46741
The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity.
Published 2022-07-11 · Modified
7.5EPSS 0.008
CVE-2021-46740
The device authentication service module has a defect vulnerability introduced in the design process.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-04-11 · Modified
7.5EPSS 0.008
CVE-2021-40051
There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentiality.
Published 2022-03-07 · Modified
7.5EPSS 0.008
CVE-2021-46787
The AMS module has a vulnerability of improper permission control.Successful exploitation of this vulnerability may cause non-system application processes to crash.
Published 2022-05-13 · Modified
7.5EPSS 0.007
CVE-2021-40063
There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-03-07 · Modified
7.5EPSS 0.007
CVE-2022-22254
A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-04-11 · Modified
7.5EPSS 0.007
CVE-2021-37100
There is a Improper Authentication vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to account authentication bypassed.
Published 2021-12-07 · Modified
7.5EPSS 0.007
CVE-2022-22256
The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-04-11 · Modified
7.5EPSS 0.007
CVE-2021-37054
There is an Identity spoofing and authentication bypass vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2021-12-08 · Modified
7.5EPSS 0.007
CVE-2022-22255
The application framework has a common DoS vulnerability.Successful exploitation of this vulnerability may affect the availability.
Published 2022-04-11 · Modified
7.5EPSS 0.007
CVE-2021-37009
There is a Configuration vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.
Published 2021-11-23 · Modified
7.5EPSS 0.007
CVE-2023-41303
Command injection vulnerability in the distributed file system module. Successful exploitation of this vulnerability may cause variables in the sock structure to be modified.
Published 2023-09-25 · Modified
7.5EPSS 0.007
CVE-2021-37010
There is a Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.
Published 2021-11-23 · Modified
7.5EPSS 0.007
CVE-2021-22319
There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows.
Published 2022-02-25 · Modified
7.5EPSS 0.007
CVE-2021-39970
HwPCAssistant has a Improper Input Validation vulnerability.Successful exploitation of this vulnerability may create any file with the system app permission.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2024-30414
Command injection vulnerability in the AccountManager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-04-07 · Analyzed
7.5EPSS 0.007
CVE-2021-40022
The weaver module has a vulnerability in parameter type verification,Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
7.5EPSS 0.007
CVE-2021-37110
There is a Timing design defects in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37113
There is a Privilege escalation vulnerability with the file system component in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-37133
There is an Unauthorized file access vulnerability in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-39966
There is an Uninitialized AOD driver structure in Smartphones.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
7.5EPSS 0.007
CVE-2021-22395
There is a code injection vulnerability in smartphones. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-02-25 · Modified
7.5EPSS 0.007
← Prev7 / 27Next →