VendorsHuaweiharmonyos5.0.2
Vulnerabilities

Huawei Harmonyos 5.0.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2025-54627
Out-of-bounds write vulnerability in the skia module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
8.8EPSS 0.002
CVE-2025-54653
Path traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization file module.
Published 2025-08-06 · Analyzed
8.4EPSS 0.001
CVE-2025-54652
Path traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization module.
Published 2025-08-06 · Analyzed
8.4EPSS 0.001
CVE-2025-54622
Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
8.3EPSS 0.001
CVE-2025-48911
Vulnerability of improper permission assignment in the note sharing module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
8.2EPSS 0.001
CVE-2025-54655
Race condition vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality and integrity of the virtualization graphics module.
Published 2025-08-06 · Analyzed
8.1EPSS 0.001
CVE-2025-54607
Authentication management vulnerability in the ArkWeb module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
7.7EPSS 0.003
CVE-2025-54606
Status verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2025-08-06 · Analyzed
7.3EPSS 0.001
CVE-2025-48908
Ability Auto Startup service vulnerability in the foundation process Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54631
Vulnerability of insufficient data length verification in the partition module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54625
Race condition vulnerability in the kernel file system module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54623
Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.5EPSS 0.002
CVE-2025-54608
Vulnerability that allows setting screen rotation direction without permission verification in the screen management module. Impact: Successful exploitation of this vulnerability may cause device screen orientation to be arbitrarily set.
Published 2025-08-06 · Analyzed
6.2EPSS 0.001
CVE-2025-54624
Unexpected injection event vulnerability in the multimodalinput module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
5.7EPSS 0.002
CVE-2025-54618
Permission control vulnerability in the distributed clipboard module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
5.7EPSS 0.001
CVE-2025-54620
Deserialization vulnerability of untrusted data in the ability module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-54619
Iterator failure issue in the multi-mode input module. Impact: Successful exploitation of this vulnerability may cause iterator failures and affect availability.
Published 2025-08-06 · Analyzed
5.3EPSS 0.001