Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    HIGH
    CVE-2021-37125

    Arbitrary file has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability .Successful exploitation of this vulnerability may cause confidentiality is affected.... Read more

    Affected Products : harmonyos
    • EPSS Score: %0.15
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2021-37124

    There is a path traversal vulnerability in Huawei PC product. Because the product does not filter path with special characters,attackers can construct a file path with special characters to exploit this vulnerability. Successful exploitation could allow t... Read more

    Affected Products : pcmanager pc_smart_full_scene
    • EPSS Score: %0.04
    • Published: Oct. 27, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-37123

    There is an improper authentication vulnerability in Hero-CT060 before 1.0.0.200. The vulnerability is due to that when an user wants to do certain operation, the software does not insufficiently validate the user's identity. Successful exploit could allo... Read more

    Affected Products : hero-ct060_firmware hero-ct060
    • EPSS Score: %0.18
    • Published: Oct. 11, 2021
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2021-37122

    There is a use-after-free (UAF) vulnerability in Huawei products. An attacker may craft specific packets to exploit this vulnerability. Successful exploitation may cause the service abnormal. Affected product versions include:CloudEngine 12800 V200R005C10... Read more

    • EPSS Score: %0.06
    • Published: Oct. 27, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-37121

    There is a Configuration defects in Smartphone.Successful exploitation of this vulnerability may elevate the MEID (IMEI) permission.... Read more

    Affected Products : emui magic_ui
    • EPSS Score: %0.24
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2021-37120

    There is a Double free vulnerability in Smartphone.Successful exploitation of this vulnerability may cause a kernel crash or privilege escalation.... Read more

    Affected Products : emui magic_ui
    • EPSS Score: %0.26
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37119

    There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.22
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-37118

    The HwNearbyMain module has a Improper Handling of Exceptional Conditions vulnerability.Successful exploitation of this vulnerability may lead to message leak.... Read more

    Affected Products : harmonyos
    • EPSS Score: %0.11
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37117

    There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.22
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 9.1

    CRITICAL
    CVE-2021-37116

    PCManager has a Weaknesses Introduced During Design vulnerability .Successful exploitation of this vulnerability may cause that the PIN of the subscriber is changed.... Read more

    Affected Products : harmonyos
    • EPSS Score: %0.26
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2021-37115

    There is an unauthorized rewriting vulnerability with the memory access management module on ACPU.Successful exploitation of this vulnerability may affect service confidentiality.... Read more

    Affected Products : emui
    • EPSS Score: %0.03
    • Published: Feb. 09, 2022
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-37114

    There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.15
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37113

    There is a Privilege escalation vulnerability with the file system component in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.13
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-37112

    Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.... Read more

    Affected Products : harmonyos
    • EPSS Score: %0.11
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37111

    There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability may cause memory exhaustion.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.22
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37110

    There is a Timing design defects in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.... Read more

    Affected Products : emui harmonyos magic_ui
    • EPSS Score: %0.15
    • Published: Jan. 03, 2022
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2021-37109

    There is a security protection bypass vulnerability with the modem.Successful exploitation of this vulnerability may cause memory protection failure.... Read more

    Affected Products : emui
    • EPSS Score: %0.03
    • Published: Feb. 09, 2022
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2021-37107

    There is an improper memory access permission configuration on ACPU.Successful exploitation of this vulnerability may cause out-of-bounds access.... Read more

    Affected Products : emui
    • EPSS Score: %0.03
    • Published: Feb. 09, 2022
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2021-37106

    There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the softwa... Read more

    Affected Products : fusioncompute
    • EPSS Score: %0.48
    • Published: Sep. 28, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-37105

    There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0. Due to the improper verification of file to be uploaded and does not strictly restrict the file access path, attackers may upload malicious files to the device... Read more

    Affected Products : fusioncompute
    • EPSS Score: %0.18
    • Published: Sep. 28, 2021
    • Modified: Nov. 21, 2024
Showing 20 of 291741 Results