cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-56450,https://securityvulnerability.io/vulnerability/CVE-2024-56450,Buffer Overflow Vulnerability in Huawei Driver Module,"A buffer overflow vulnerability has been identified in the driver module used by Huawei products. This flaw allows an attacker to exploit the system by overflowing the buffer, potentially leading to system instability and impacting availability. Mitigation measures are essential to safeguard against potential exploitation.",Huawei,"Harmonyos,Emui",6.3,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T03:14:51.159Z,0 CVE-2024-56449,https://securityvulnerability.io/vulnerability/CVE-2024-56449,Privilege Escalation Vulnerability in Huawei Account Module,"The vulnerability enables a user to gain elevated privileges within Huawei's Account module, potentially compromising service confidentiality. If exploited, it could allow unauthorized access to sensitive data and functionality, making it critical for affected users to apply the latest security patches promptly to mitigate the risk.",Huawei,"Harmonyos,Emui",6.6,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T03:13:25.971Z,0 CVE-2024-56448,https://securityvulnerability.io/vulnerability/CVE-2024-56448,Improper Access Control in Huawei Home Screen Widget Module,"The vulnerability involves improper access control mechanisms within the home screen widget module of Huawei devices. This flaw could lead to unauthorized access or exploitation, potentially compromising user security and affecting the availability of the affected systems. It underscores the importance of implementing robust access control measures in software development to safeguard users against potential attacks.",Huawei,"Harmonyos,Emui",6.7,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T03:11:56.159Z,0 CVE-2024-56447,https://securityvulnerability.io/vulnerability/CVE-2024-56447,Improper Permission Control in Huawei's Window Management Module,"The vulnerability involves improper permission control within Huawei's window management module. Exploiting this flaw could potentially compromise service confidentiality, allowing unauthorized access to sensitive information. Users are advised to update to the latest version as a precaution against possible exploitation. For detailed guidance, refer to Huawei's security bulletin.",Huawei,"Harmonyos,Emui",7.8,HIGH,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T03:03:11.490Z,0 CVE-2024-56442,https://securityvulnerability.io/vulnerability/CVE-2024-56442,NFC Service Module Vulnerability in Huawei Devices,"The NFC service module in Huawei devices presents a vulnerability due to the insufficient implementation of native APIs. This flaw can lead to abnormal behavior of features that rely on the NFC service, potentially impacting user experience and device functionality. It is crucial for users and administrators to remain vigilant and keep their software updated to mitigate potential risks.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T02:20:03.579Z,0 CVE-2024-56441,https://securityvulnerability.io/vulnerability/CVE-2024-56441,Race Condition Vulnerability in Huawei's Bastet Module,"A race condition vulnerability exists within Huawei's Bastet module, which may allow attackers to exploit timing discrepancies in processes. This could lead to significant breaches affecting the confidentiality of services. It highlights the importance of implementing robust security measures to protect sensitive operations from potential timing attacks.",Huawei,"Harmonyos,Emui",4.1,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T02:12:46.961Z,0 CVE-2024-56440,https://securityvulnerability.io/vulnerability/CVE-2024-56440,Permission Control Vulnerability in Huawei Connectivity Module,"A permission control vulnerability exists in Huawei's Connectivity module that may allow unauthorized access to certain features. Successful exploitation could lead to abnormal functionality of these features, posing potential risks to user privacy and system integrity.",Huawei,"Harmonyos,Emui",6.2,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T02:08:46.885Z,0 CVE-2024-56438,https://securityvulnerability.io/vulnerability/CVE-2024-56438,Improper Memory Address Protection in HUKS Module Affects Huawei Products,"The HUKS (Huawei Key Storage) module contains a vulnerability due to improper memory address protection. This flaw may allow attackers to exploit the system, potentially leading to unauthorized access or manipulation, ultimately impacting the availability of affected applications and services.",Huawei,"Harmonyos,Emui",6,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T02:04:06.730Z,0 CVE-2023-52955,https://securityvulnerability.io/vulnerability/CVE-2023-52955,Improper Authentication Vulnerability in ANS System Service Module by Huawei,"An improper authentication vulnerability exists in Huawei's ANS system service module, potentially allowing unauthorized access or abnormal feature performance. Successful exploitation could lead to severe impacts on system integrity and functionality, necessitating immediate attention and remediation.",Huawei,"Harmonyos,Emui",6.5,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T02:00:17.658Z,0 CVE-2023-52954,https://securityvulnerability.io/vulnerability/CVE-2023-52954,Improper Permission Control in Gallery Module of Huawei Devices,"The Gallery module in Huawei devices contains a vulnerability that arises from inadequate permission controls. This security flaw can be exploited to impact the availability of the service, potentially allowing unauthorized access or manipulation of gallery content. Users are advised to ensure their devices are updated and to follow best practices in cybersecurity to mitigate risks associated with this vulnerability.",Huawei,"Harmonyos,Emui",4.4,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T01:51:55.588Z,0 CVE-2023-52953,https://securityvulnerability.io/vulnerability/CVE-2023-52953,Path Traversal Flaw in Medialibrary Module by Huawei,"A path traversal vulnerability exists in the Medialibrary module developed by Huawei, which can be exploited to gain unauthorized access to file system paths. This can lead to a compromise of both integrity and confidentiality, allowing attackers to read sensitive files outside the intended directories. Organizations using this module should take immediate action to mitigate the risk.",Huawei,"Harmonyos,Emui",6.2,MEDIUM,0.0004400000034365803,false,false,false,false,false,false,false,2025-01-08T01:48:23.333Z,0 CVE-2024-56434,https://securityvulnerability.io/vulnerability/CVE-2024-56434,Use-After-Free Vulnerability in Huawei Device Node Access Module,"A Use-After-Free (UAF) vulnerability exists within the device node access module developed by Huawei. This vulnerability could lead to service exceptions, potentially compromising the security and reliability of affected Huawei products. Successful exploitation of this flaw may allow unauthorized access or manipulation of device functions, posing a significant risk to users.",Huawei,"Harmonyos,Emui",4.4,MEDIUM,0.0004299999854993075,false,false,false,false,false,false,false,2025-01-08T01:32:32.297Z,0 CVE-2024-54101,https://securityvulnerability.io/vulnerability/CVE-2024-54101,Installation Module Denial of Service Vulnerability Threatens Availability,"Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability.",Huawei,"Harmonyos,Emui",6.2,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-12-12T11:38:12.726Z,0 CVE-2024-54100,https://securityvulnerability.io/vulnerability/CVE-2024-54100,Abnormal Feature Performance Due to Improper Access Control,"Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.",Huawei,"Harmonyos,Emui",6.2,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-12-12T11:25:52.084Z,0 CVE-2024-54099,https://securityvulnerability.io/vulnerability/CVE-2024-54099,Data Integrity and Confidentiality at Risk: File Replacement Vulnerability Affects Several Devices,"A file replacement vulnerability exists in various Huawei devices, allowing unauthorized modification of files. Successful exploitation could compromise the integrity and confidentiality of sensitive information stored on affected devices. This vulnerability underscores the importance of implementing robust security measures to protect against unauthorized file manipulations.",Huawei,"Harmonyos,Emui",7.1,HIGH,0.0004299999854993075,false,false,false,false,,false,false,2024-12-12T11:23:40.542Z,0 CVE-2024-54098,https://securityvulnerability.io/vulnerability/CVE-2024-54098,Service Integrity at Risk: Vulnerability in System Service Module,A service logic error has been identified in the Huawei System Service Module. This vulnerability could allow attackers to compromise the integrity of services within the system. Proper assessment and remediation steps are essential to ensure that the security of the system and its operations remain intact. Monitoring for irregularities in system behavior is highly recommended to address potential exploitation of this vulnerability.,Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004799999878741801,false,false,false,false,,false,false,2024-12-12T11:13:47.089Z,0 CVE-2024-54097,https://securityvulnerability.io/vulnerability/CVE-2024-54097,Security Vulnerability in HiView Module May Affect Feature Implementation and Integrity,"A security vulnerability has been identified within the HiView module of various Huawei products. This flaw could potentially allow an attacker to exploit the feature implementation of the affected module, leading to concerns regarding the integrity of the system. Users of Huawei products utilizing the HiView module are advised to remain vigilant and apply any available updates. Further details about this vulnerability can be found in the official bulletin.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004799999878741801,false,false,false,false,,false,false,2024-12-12T11:11:58.118Z,0 CVE-2024-54096,https://securityvulnerability.io/vulnerability/CVE-2024-54096,MTP Vulnerability: Integrity and Accuracy at Risk,"Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-12-12T11:10:17.921Z,0 CVE-2024-51528,https://securityvulnerability.io/vulnerability/CVE-2024-51528,Super Home Screen Vulnerability May Affect Service Confidentiality,"Vulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-11-05T09:33:14.126Z,0 CVE-2024-51527,https://securityvulnerability.io/vulnerability/CVE-2024-51527,Gallery App Permission Control Vulnerability May Affect Service Confidentiality,"Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-11-05T09:25:27.127Z,0 CVE-2024-51510,https://securityvulnerability.io/vulnerability/CVE-2024-51510,Logo Module Vulnerability: Impact on Service Confidentiality,"Out-of-bounds access vulnerability in the logo module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-11-05T08:24:44.011Z,0 CVE-2024-8298,https://securityvulnerability.io/vulnerability/CVE-2024-8298,Memory Request Vulnerability Threatens Service Confidentiality,"A memory request vulnerability exists within the memory management module utilized in various Huawei products. Exploiting this vulnerability can potentially compromise the confidentiality of services, exposing sensitive information and user data. This issue requires immediate attention to ensure the integrity and security of the affected systems, as it poses risks to organizational data privacy.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-09-04T02:22:15.826Z,0 CVE-2024-45449,https://securityvulnerability.io/vulnerability/CVE-2024-45449,Ringtones Setting Module Vulnerability: Service Confidentiality at Risk,"Access permission verification vulnerability in the ringtone setting module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-09-04T02:21:12.057Z,0 CVE-2024-45448,https://securityvulnerability.io/vulnerability/CVE-2024-45448,Service Confidentiality at Risk from Configuration Vulnerability in Trusted Firmware Module,"Page table protection configuration vulnerability in the trusted firmware module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-09-04T02:19:20.881Z,0 CVE-2024-45447,https://securityvulnerability.io/vulnerability/CVE-2024-45447,Camera Framework Module Vulnerability Could Compromise Service Confidentiality,"Access control vulnerability in the camera framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,false,false,false,,false,false,2024-09-04T02:16:37.736Z,0