Total
404 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-41599 | 1 Huawei | 2 Emui, Harmonyos | 2022-12-23 | N/A | 7.5 HIGH |
The system service has a vulnerability that causes incorrect return values. Successful exploitation of this vulnerability may affect data confidentiality. | |||||
CVE-2022-46312 | 1 Huawei | 2 Emui, Harmonyos | 2022-12-23 | N/A | 7.5 HIGH |
The application management module has a vulnerability in permission verification. Successful exploitation of this vulnerability causes unexpected clear of device applications. | |||||
CVE-2022-41596 | 1 Huawei | 2 Emui, Harmonyos | 2022-12-23 | N/A | 7.5 HIGH |
The system tool has inconsistent serialization and deserialization. Successful exploitation of this vulnerability will cause unauthorized startup of components. | |||||
CVE-2022-34742 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-12-12 | 5.0 MEDIUM | 7.5 HIGH |
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | |||||
CVE-2021-46741 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-12-12 | 5.0 MEDIUM | 7.5 HIGH |
The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity. | |||||
CVE-2021-40012 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-12-12 | 5.0 MEDIUM | 7.5 HIGH |
Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality. | |||||
CVE-2022-44561 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-17 | N/A | 7.5 HIGH |
The preset launcher module has a permission verification vulnerability. Successful exploitation of this vulnerability makes unauthorized apps add arbitrary widgets and shortcuts without interaction. | |||||
CVE-2022-44560 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-17 | N/A | 5.3 MEDIUM |
The launcher module has an Intent redirection vulnerability. Successful exploitation of this vulnerability may cause launcher module data to be modified. | |||||
CVE-2022-44552 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 7.5 HIGH |
The lock screen module has defects introduced in the design process. Successful exploitation of this vulnerability may affect system availability. | |||||
CVE-2022-44551 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 9.8 CRITICAL |
The iaware module has a vulnerability in thread security. Successful exploitation of this vulnerability will affect confidentiality, integrity, and availability. | |||||
CVE-2022-44553 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 5.3 MEDIUM |
The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically. | |||||
CVE-2022-44554 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 7.5 HIGH |
The power module has a vulnerability in permission verification. Successful exploitation of this vulnerability may cause abnormal status of a module on the device. | |||||
CVE-2022-44555 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 7.5 HIGH |
The DDMP/ODMF module has a service hijacking vulnerability. Successful exploit of this vulnerability may cause services to be unavailable. | |||||
CVE-2022-44557 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 7.5 HIGH |
The SmartTrimProcessEvent module has a vulnerability of obtaining the read and write permissions on arbitrary system files. Successful exploitation of this vulnerability may affect data confidentiality. | |||||
CVE-2022-44558 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 9.8 CRITICAL |
The AMS module has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation. | |||||
CVE-2022-44559 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-14 | N/A | 9.8 CRITICAL |
The AMS module has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation. | |||||
CVE-2021-46852 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-10 | N/A | 7.5 HIGH |
The memory management module has the logic bypass vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | |||||
CVE-2021-46851 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-10 | N/A | 9.8 CRITICAL |
The DRM module has a vulnerability in verifying the secure memory attributes. Successful exploitation of this vulnerability may cause abnormal video playback. | |||||
CVE-2022-44549 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-10 | N/A | 7.5 HIGH |
The LBS module has a vulnerability in geofencing API access. Successful exploitation of this vulnerability may cause third-party apps to access the geofencing APIs without authorization, affecting user confidentiality. | |||||
CVE-2022-44550 | 1 Huawei | 2 Emui, Harmonyos | 2022-11-10 | N/A | 7.5 HIGH |
The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vulnerability may affect system availability. |