Latest CVE Feed
-
4.9
MEDIUMCVE-2020-9205
There has a CSV injection vulnerability in ManageOne 8.0.1. An attacker with common privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input validation of some parameters, the attacker can exploit... Read more
Affected Products : manageone- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2020-9203
There is a resource management errors vulnerability in Huawei P30. Local attackers construct broadcast message for some application, causing this application to send this broadcast message and impact the customer's use experience.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
4.4
MEDIUMCVE-2020-9202
There is an information disclosure vulnerability in TE Mobile software versions V600R006C10,V600R006C10SPC100. Due to the improper storage of some information in certain specific scenario, the attacker can gain information in the victim's device to launch... Read more
Affected Products : te_mobile- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2020-9201
There is an out-of-bounds read vulnerability in some versions of NIP6800, Secospace USG6600 and USG9500. The software reads data past the end of the intended buffer when parsing DHCP messages including crafted parameter. Successful exploit could cause cer... Read more
Affected Products : nip6800_firmware secospace_usg6600_firmware usg9500_firmware usg9500 secospace_usg6600 nip6800- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2020-9200
There has a CSV injection vulnerability in iManager NetEco 6000 versions V600R021C00. An attacker with common privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input validation of some parameters... Read more
Affected Products : imanager_neteco_6000- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024
-
7.7
HIGHCVE-2020-9199
B2368-22 V100R001C00;B2368-57 V100R001C00;B2368-66 V100R001C00 have a command injection vulnerability. An attacker with high privileges may exploit this vulnerability through some operations on the LAN. Due to insufficient input validation of some paramet... Read more
Affected Products : b2368-22_firmware b2368-57_firmware b2368-66_firmware b2368-22 b2368-57 b2368-66- Published: Sep. 03, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2020-9158
There is a Missing Cryptographic Step vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause DoS of Samgr.... Read more
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-9149
An application error verification vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit this vulnerability to modify and delete user SMS messages.... Read more
- Published: Apr. 01, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-9148
An application bypass mechanism vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit this vulnerability to delete user SMS messages.... Read more
- Published: Apr. 01, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2020-9147
A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit this vulnerability by carefully constructing attack scenarios to cause out-of-bounds read.... Read more
- Published: Apr. 01, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-9146
A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit this vulnerability to cause memory leakage and doS attacks by carefully constructing attack scenarios.... Read more
- Published: Apr. 01, 2021
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2020-9145
There is an Out-of-bounds Write vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability may cause out-of-bounds access to the physical memory.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2020-9144
There is a heap overflow vulnerability in some Huawei smartphone, attackers can exploit this vulnerability to cause heap overflows due to improper restriction of operations within the bounds of a memory buffer.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2020-9143
There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2020-9142
There is a heap base buffer overflow vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability can cause heap overflow and memory overwriting when the system incorrectly processes the update file.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2020-9141
There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability can cause information disclosure and malfunctions due to insufficient verification of data authenticity.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2020-9140
There is a vulnerability with buffer access with incorrect length value in some Huawei Smartphone.Unauthorized users may trigger code execution when a buffer overflow occurs.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2020-9139
There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors and denial of service.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2020-9138
There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability can cause process exceptions during updating.... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2020-9137
There is a privilege escalation vulnerability in some versions of CloudEngine 12800,CloudEngine 5800,CloudEngine 6800 and CloudEngine 7800. Due to insufficient input validation, a local attacker with high privilege may execute some specially crafted scrip... Read more
- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024