Latest CVE Feed
-
7.5
HIGHCVE-2021-22322
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may impair data confidentiality.... Read more
- EPSS Score: %0.11
- Published: Jun. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-22321
There is a use-after-free vulnerability in a Huawei product. A module cannot deal with specific operations in special scenarios. Attackers can exploit this vulnerability by performing malicious operations. This can cause memory use-after-free, compromisin... Read more
Affected Products : nip6800_firmware secospace_usg6600_firmware usg9500_firmware s12700_firmware s1700_firmware s2700_firmware s5700_firmware s6700_firmware s7700_firmware s9700_firmware +18 more products- EPSS Score: %0.21
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-22320
There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. Attackers can exploit this vulnerability by sending malicious messages to an affected module. This can lead to denial of service. Affecte... Read more
- EPSS Score: %0.18
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-22319
There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows.... Read more
- EPSS Score: %0.22
- Published: Feb. 25, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-22318
A component of the HarmonyOS 2.0 has a Null Pointer Dereference Vulnerability. Local attackers may exploit this vulnerability to cause system denial of service.... Read more
Affected Products : harmonyos- EPSS Score: %0.02
- Published: Jul. 14, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-22317
There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may impair data confidentiality.... Read more
- EPSS Score: %0.14
- Published: Jun. 03, 2021
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2021-22316
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's da... Read more
- EPSS Score: %0.02
- Published: Jun. 03, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-22314
There is a local privilege escalation vulnerability in some versions of ManageOne. A local authenticated attacker could perform specific operations to exploit this vulnerability. Successful exploitation may cause the attacker to obtain a higher privilege ... Read more
Affected Products : manageone- EPSS Score: %0.02
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-22313
There is a Security Function vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may impair data confidentiality.... Read more
- EPSS Score: %0.14
- Published: Jun. 03, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-22312
There is a memory leak vulnerability in some Huawei products. An authenticated remote attacker may exploit this vulnerability by sending specific message to the affected product. Due to not release the allocated memory properly, successful exploit may cau... Read more
- EPSS Score: %0.19
- Published: Apr. 08, 2021
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2021-22311
There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper perm... Read more
Affected Products : manageone- EPSS Score: %0.15
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
4.4
MEDIUMCVE-2021-22310
There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific information in the log file, the attacker can obtain the information when a user logs in to the device. Successful exploit may cause an informat... Read more
Affected Products : secospace_usg6600_firmware usg9500_firmware secospace_usg6300_firmware secospace_usg6500_firmware nip6300_firmware nip6600_firmware nip6300 secospace_usg6500 usg9500 secospace_usg6300 +2 more products- EPSS Score: %0.03
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-22309
There is insecure algorithm vulnerability in Huawei products. A module uses less random input in a secure mechanism. Attackers can exploit this vulnerability by brute forcing to obtain sensitive message. This can lead to information leak. Affected product... Read more
Affected Products : usg9500_firmware usg9520_firmware usg9580_firmware usg9560_firmware usg9500 usg9520 usg9580 usg9560- EPSS Score: %0.15
- Published: Mar. 22, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-22308
There is a Business Logic Errors vulnerability in Huawei Smartphone. The malicious apps installed on the device can keep taking screenshots in the background. This issue does not cause system errors, but may cause personal information leakage.... Read more
- EPSS Score: %0.02
- Published: Jun. 03, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-22307
There is a weak algorithm vulnerability in Mate 3010.0.0.203(C00E201R7P2). The protection is insufficient for the modules that should be protected. Local attackers can exploit this vulnerability to affect the integrity of certain module.... Read more
- EPSS Score: %0.02
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
4.6
MEDIUMCVE-2021-22306
There is an out-of-bound read vulnerability in Mate 30 10.0.0.182(C00E180R6P2). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending malicious input through specific module. This could cau... Read more
- EPSS Score: %0.02
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-22305
There is a buffer overflow vulnerability in Mate 30 10.1.0.126(C00E125R5P3). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending malicious input through specific module. This could cause ... Read more
- EPSS Score: %0.03
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-22304
There is a use after free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module may refer to some memory after it has been freed while dealing with some messages. Attackers can exploit this vulnerability by sending specific message to the affected m... Read more
- EPSS Score: %0.03
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-22303
There is a pointer double free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). There is a lack of muti-thread protection when a function is called. Attackers can exploit this vulnerability by performing malicious operation to cause pointer double free.... Read more
- EPSS Score: %0.08
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2021-22302
There is an out-of-bound read vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module does not verify the some input. Attackers can exploit this vulnerability by sending malicious input through specific app. This could cause out-of-bound, compromising... Read more
- EPSS Score: %0.03
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024