VendorsHuaweimagic_uiall versions
Vulnerabilities

Huawei Magic

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

276CVEs
CVE-2021-37001
There is a Register tampering vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow the register value to be modified.
Published 2021-10-28 · Modified
7.5EPSS 0.006
CVE-2022-37007
The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
Published 2022-08-09 · Modified
7.5EPSS 0.006
CVE-2021-40034
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
Published 2022-08-09 · Modified
7.5EPSS 0.006
CVE-2022-22257
The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity.
Published 2022-04-11 · Modified
7.5EPSS 0.006
CVE-2022-34738
The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.
Published 2022-07-11 · Modified
7.5EPSS 0.006
CVE-2022-39004
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2022-38987
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2022-38989
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2022-38990
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2022-38993
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2021-46788
Third-party pop-up window coverage vulnerability in the iConnect module.Successful exploitation of this vulnerability may cause system pop-up window may be covered to mislead users to perform incorrect operations.
Published 2022-05-13 · Modified
7.5EPSS 0.006
CVE-2021-40040
Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2022-37005
The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2021-40030
The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2022-38978
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38979
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38988
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38991
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38992
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38997
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2021-22442
There is an Improper Validation of Integrity Check Value Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.
Published 2021-08-02 · Modified
7.5EPSS 0.003
CVE-2021-37050
There is a Missing sensitive data encryption vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2021-12-08 · Modified
7.5EPSS 0.003
CVE-2022-22253
The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability.
Published 2022-04-11 · Modified
7.5EPSS 0.003
CVE-2022-37008
The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.
Published 2022-08-09 · Modified
7.5EPSS 0.003
CVE-2021-37069
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
Published 2021-12-08 · Modified
7.4EPSS 0.005
CVE-2021-22334
There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause app redirections.
Published 2021-06-03 · Modified
7.4EPSS 0.002
CVE-2021-40055
There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
Published 2022-03-07 · Modified
7.1EPSS 0.005
CVE-2021-36987
There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race conditions. Successful exploitation of this vulnerability can cause the system to restart.
Published 2021-10-28 · Modified
7.1EPSS 0.005
CVE-2021-22386
A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.
Published 2021-08-10 · Modified
7.0EPSS 0.002
CVE-2021-22437
There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulnerability may cause random address access.
Published 2022-02-25 · Modified
7.0EPSS 0.002
CVE-2021-22316
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and functional availability.
Published 2021-06-03 · Modified
6.8EPSS 0.002
CVE-2022-34741
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2022-34740
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2021-40016
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2021-40059
There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-03-07 · Modified
6.5EPSS 0.003
CVE-2021-37039
There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause Bluetooth DoS.
Published 2021-12-08 · Modified
6.5EPSS 0.003
CVE-2021-40013
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2022-39006
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
Published 2022-09-16 · Modified
5.9EPSS 0.004
CVE-2022-31751
The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability may affect system availability.
Published 2022-06-13 · Modified
5.5EPSS 0.002
CVE-2021-40037
There is a Vulnerability of accessing resources using an incompatible type (type confusion) in the MPTCP subsystem in smartphones. Successful exploitation of this vulnerability may cause the system to crash and restart.
Published 2022-01-07 · Modified
5.5EPSS 0.002
← Prev6 / 7Next →