VendorsHuaweiharmonyos3.0.0
Vulnerabilities

Huawei Harmonyos 3.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

318CVEs
CVE-2024-51529
Data verification vulnerability in the battery module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2024-11-05 · Analyzed
5.5EPSS 0.001
CVE-2024-51527
Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
5.5EPSS 0.001
CVE-2024-47290
Input validation vulnerability in the USB service module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-09-27 · Analyzed
5.5EPSS 0.001
CVE-2024-45447
Access control vulnerability in the camera framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Analyzed
5.5EPSS 0.001
CVE-2025-54637
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-54636
Issue of buffer overflow caused by insufficient data verification in the kernel drop detection module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-66329
Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Modified
5.5EPSS 0.001
CVE-2023-4565
Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may cause the hotspot feature to be unavailable.
Published 2023-09-26 · Modified
5.3EPSS 0.005
CVE-2023-46755
Vulnerability of input parameters being not strictly verified in the input. Successful exploitation of this vulnerability may cause the launcher to restart.
Published 2023-11-08 · Modified
5.3EPSS 0.004
CVE-2023-6273
Permission management vulnerability in the module for disabling Sound Booster. Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2023-12-06 · Modified
5.3EPSS 0.004
CVE-2022-48361
The Always On Display (AOD) has a path traversal vulnerability in theme files. Successful exploitation of this vulnerability may cause a failure in reading AOD theme resources.
Published 2023-03-27 · Modified
5.3EPSS 0.004
CVE-2023-41312
Permission control vulnerability in the audio module. Successful exploitation of this vulnerability may cause several apps to be activated automatically.
Published 2023-09-26 · Modified
5.3EPSS 0.004
CVE-2023-44102
Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability can cause the Bluetooth function to be unavailable.
Published 2023-10-11 · Modified
5.3EPSS 0.004
CVE-2023-41311
Permission control vulnerability in the audio module. Successful exploitation of this vulnerability may cause an app to be activated automatically.
Published 2023-09-26 · Modified
5.3EPSS 0.003
CVE-2023-46764
Unauthorized startup vulnerability of background apps. Successful exploitation of this vulnerability may cause background apps to start maliciously.
Published 2023-11-08 · Modified
5.3EPSS 0.003
CVE-2022-44553
The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically.
Published 2022-11-09 · Modified
5.3EPSS 0.003
CVE-2023-44094
Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the device to restart.
Published 2023-10-11 · Modified
5.3EPSS 0.003
CVE-2023-46763
Vulnerability of background app permission management in the framework module. Successful exploitation of this vulnerability may cause background apps to start maliciously.
Published 2023-11-08 · Modified
5.3EPSS 0.003
CVE-2023-52112
Unauthorized file access vulnerability in the wallpaper service module. Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-01-16 · Modified
5.3EPSS 0.003
CVE-2023-3456
Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2023-07-06 · Modified
5.3EPSS 0.003
CVE-2022-44560
The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified.
Published 2022-11-09 · Modified
5.3EPSS 0.003
CVE-2023-46756
Permission control vulnerability in the window management module. Successful exploitation of this vulnerability may cause malicious pop-up windows.
Published 2023-11-08 · Modified
5.3EPSS 0.003
CVE-2023-39387
Vulnerability of permission control in the window management module. Successful exploitation of this vulnerability may cause malicious pop-up windows.
Published 2023-08-13 · Modified
5.3EPSS 0.003
CVE-2023-37238
Vulnerability of apps' permission to access a certain API being incompletely verified in the wireless projection module. Successful exploitation of this vulnerability may affect some wireless projection features.
Published 2023-07-06 · Modified
5.3EPSS 0.003
CVE-2022-48296
The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerability may cause users to receive broadcasts from malicious apps, conveying false alarm information about external storage devices.
Published 2023-02-09 · Modified
5.3EPSS 0.003
CVE-2023-41304
Parameter verification vulnerability in the window module.Successful exploitation of this vulnerability may cause the size of an app window to be adjusted to that of a floating window.
Published 2023-10-11 · Modified
5.3EPSS 0.003
CVE-2023-52717
Permission verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-07 · Analyzed
5.3EPSS 0.003
CVE-2023-52368
Input verification vulnerability in the account module.Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-02-18 · Analyzed
5.3EPSS 0.003
CVE-2023-41295
Vulnerability of improper permission management in the displayengine module. Successful exploitation of this vulnerability may cause the screen to turn dim.
Published 2023-09-25 · Modified
5.3EPSS 0.002
CVE-2023-52551
Vulnerability of data verification errors in the kernel module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-04-08 · Analyzed
5.3EPSS 0.001
CVE-2025-54646
Vulnerability of inadequate packet length check in the BLE module. Impact: Successful exploitation of this vulnerability may affect performance.
Published 2025-08-06 · Analyzed
5.1EPSS 0.001
CVE-2023-52544
Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-04-08 · Analyzed
4.3EPSS 0.003
CVE-2023-52380
Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-02-18 · Analyzed
4.3EPSS 0.003
CVE-2023-44110
Out-of-bounds access vulnerability in the audio module.Successful exploitation of this vulnerability may affect availability.
Published 2023-10-11 · Modified
4.3EPSS 0.002
CVE-2022-44548
There is a vulnerability in permission verification during the Bluetooth pairing process. Successful exploitation of this vulnerability may cause the dialog box for confirming the pairing not to be displayed during Bluetooth pairing.
Published 2022-11-09 · Modified
4.3EPSS 0.002
CVE-2023-52720
Race condition vulnerability in the soundtrigger module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
4.1EPSS 0.001
CVE-2023-52371
Vulnerability of null references in the motor module.Successful exploitation of this vulnerability may affect availability.
Published 2024-02-18 · Analyzed
3.5EPSS 0.002
CVE-2023-41310
Keep-alive vulnerability in the sticky broadcast mechanism. Successful exploitation of this vulnerability may cause malicious apps to run continuously in the background.
Published 2023-09-26 · Modified
3.3EPSS 0.002
← Prev8 / 8