Latest CVE Feed
-
7.8
HIGHCVE-2020-9123
HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) and versions earlier than 10.1.0.160(C01E160R2P8) have a buffer overflow vulnerability. An attacker induces users to install malicious applications and sends specially constructed packets to aff... Read more
- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2020-9122
Some Huawei products have an insufficient input verification vulnerability. Attackers can exploit this vulnerability in the LAN to cause service abnormal on affected devices.Affected product versions include:HiRouter-CD30-10 version 10.0.2.5;HiRouter-CT31... Read more
Affected Products : ws5800-10_firmware hirouter-cd30-10_firmware hirouter-ct31-10_firmware ws5200-12_firmware ws5281-10_firmware ws7100-10_firmware ws7200-10_firmware hirouter-cd30-10 ws5800-10 hirouter-ct31-10 +4 more products- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2020-9120
CloudEngine 1800V versions V100R019C10SPC500 has a resource management error vulnerability. Remote unauthorized attackers could send specific types of messages to the device, resulting in the message received by the system can't be forwarded normally.... Read more
Affected Products : cloudengine_1800v- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024
-
6.2
MEDIUMCVE-2020-9119
There is a privilege escalation vulnerability on some Huawei smart phones due to design defects. The attacker needs to physically contact the mobile phone and obtain higher privileges, and execute relevant commands, resulting in the user's privilege promo... Read more
Affected Products : mate_10_firmware mate_30_firmware mate_30_pro_firmware p40_firmware p40_pro_firmware mate_30_pro mate_30 mate_10 p40 p40_pro- Published: Dec. 24, 2020
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2020-9118
There is an insufficient integrity check vulnerability in Huawei Sound X Product. The system does not check certain software package's integrity sufficiently. Successful exploit could allow an attacker to load a crafted software package to the device. Aff... Read more
- Published: Feb. 06, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2020-9117
HUAWEI nova 4 versions earlier than 10.0.0.165(C01E34R2P4) and SydneyM-AL00 versions earlier than 10.0.0.165(C00E66R1P5) have an out-of-bounds read and write vulnerability. An attacker with specific permissions crafts malformed packet with specific parame... Read more
- Published: Dec. 01, 2020
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2020-9116
Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the attack... Read more
Affected Products : fusioncompute- Published: Dec. 01, 2020
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2020-9115
ManageOne versions 6.5.1.1.B010, 6.5.1.1.B020, 6.5.1.1.B030, 6.5.1.1.B040, ,6.5.1.1.B050, 8.0.0 and 8.0.1 have a command injection vulnerability. An attacker with high privileges may exploit this vulnerability through some operations on the plug-in compon... Read more
Affected Products : manageone- Published: Dec. 01, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2020-9114
FusionCompute versions 6.3.0, 6.3.1, 6.5.0, 6.5.1 and 8.0.0 have a privilege escalation vulnerability. Due to improper privilege management, an attacker with common privilege may access some specific files and get the administrator privilege in the affect... Read more
Affected Products : fusioncompute- Published: Dec. 01, 2020
- Modified: Nov. 21, 2024
-
8.0
HIGHCVE-2020-9113
HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input validation, an unauthenticated attacker may craft Bluetooth messages after successful paring, causing buffe... Read more
- Published: Oct. 19, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2020-9112
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of privilege restrictions on some of the business functions of the device. An attacker could exploit this vulnerability to access the protecti... Read more
- Published: Oct. 19, 2020
- Modified: Nov. 21, 2024
-
4.5
MEDIUMCVE-2020-9111
E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the even... Read more
- Published: Oct. 19, 2020
- Modified: Nov. 21, 2024
-
4.6
MEDIUMCVE-2020-9110
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have an information disclosure vulnerability. The device does not sufficiently validate the output of device in certain specific scenario, the attacker can gain information in the victim's smartph... Read more
- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
4.6
MEDIUMCVE-2020-9109
There is an information disclosure vulnerability in several smartphones. The device does not sufficiently validate the identity of smart wearable device in certain specific scenario, the attacker need to gain certain information in the victim's smartphone... Read more
Affected Products : p30_pro_firmware mate_20_firmware mate_20_x_firmware laya-al00ep_firmware tony-al00b_firmware tony-tl00b_firmware tony-al00b tony-tl00b mate_20 mate_20_x +2 more products- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2020-9108
HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) have an out-of-bounds read and write vulnerability. An unauthenticated attacker crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficie... Read more
- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2020-9107
HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) have an out-of-bounds read and write vulnerability. An unauthenticated attacker crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficie... Read more
- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
4.6
MEDIUMCVE-2020-9106
HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) have a path traversal vulnerability. The system does not sufficiently validate certain pathname, successful exploit could allow the attacker access files and cause information disclosure.... Read more
- Published: Oct. 12, 2020
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2020-9105
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have an insufficient input validation vulnerability. Due to the input validation logic is incorrect, an attacker can exploit this vulnerability to access and modify the memory of the device by doi... Read more
- Published: Oct. 09, 2020
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2020-9104
HUAWEI P30 smartphones with Versions earlier than 10.1.0.123(C431E22R2P5),Versions earlier than 10.1.0.123(C432E22R2P5),Versions earlier than 10.1.0.126(C10E7R5P1),Versions earlier than 10.1.0.126(C185E4R7P1),Versions earlier than 10.1.0.126(C461E7R3P1),V... Read more
- Published: Aug. 21, 2020
- Modified: Nov. 21, 2024
-
4.6
MEDIUMCVE-2020-9103
HUAWEI Mate 20 smartphones with 9.0.0.205(C00E205R2P1) have a logic error vulnerability. In a special scenario, the system does not properly process. As a result, attackers can perform a series of operations to successfully establish P2P connections that ... Read more
- Published: Aug. 17, 2020
- Modified: Nov. 21, 2024