cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-57961,https://securityvulnerability.io/vulnerability/CVE-2024-57961,Out-of-Bounds Write Vulnerability in Huawei Devices,"An out-of-bounds write vulnerability in the emcom module of certain Huawei devices could lead to abnormal feature performance. Attackers potentially exploiting this weakness may disrupt normal operations, presenting a serious concern for device stability and integrity. Users are urged to prioritize updates to safeguard against potential exploitation.",Huawei,"Harmonyos,Emui",6.8,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-02-06T12:33:50.291Z,0 CVE-2024-57960,https://securityvulnerability.io/vulnerability/CVE-2024-57960,Input Verification Vulnerability in Huawei ExternalStorageProvider Module,The ExternalStorageProvider module developed by Huawei has been identified with an input verification vulnerability that could allow unauthorized access to sensitive data. This flaw compromises the confidentiality of services provided by the module. Organizations utilizing this product should prioritize reviewing their configurations and applying any necessary updates to mitigate potential risks.,Huawei,"Harmonyos,Emui",7.7,HIGH,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-02-06T12:32:39.794Z,0 CVE-2024-57959,https://securityvulnerability.io/vulnerability/CVE-2024-57959,Use-After-Free Vulnerability in Huawei Display Module,"A use-after-free vulnerability in the Huawei display module may allow attackers to exploit certain features, leading to abnormal performance behavior. This vulnerability can be triggered under specific conditions, resulting in potential disruption of normal operations. Users are advised to implement security patches provided by Huawei to mitigate risks associated with this issue.",Huawei,"Harmonyos,Emui",6.1,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-02-06T12:31:09.281Z,0 CVE-2024-57958,https://securityvulnerability.io/vulnerability/CVE-2024-57958,Out-of-Bounds Array Read Vulnerability in Huawei's FFRT Module,"The vulnerability in Huawei's FFRT module allows for out-of-bounds array reads. This can lead to abnormal behavior of the module, impacting the overall functionality and reliability of applications relying on it. Proper measures should be taken to ensure systems are safeguarded against potential exploitation.",Huawei,"Harmonyos,Emui",5.7,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-02-06T12:29:41.313Z,0 CVE-2024-56450,https://securityvulnerability.io/vulnerability/CVE-2024-56450,Buffer Overflow Vulnerability in Huawei Driver Module,"A buffer overflow vulnerability has been identified in the driver module used by Huawei products. This flaw allows an attacker to exploit the system by overflowing the buffer, potentially leading to system instability and impacting availability. Mitigation measures are essential to safeguard against potential exploitation.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-08T03:14:51.159Z,0 CVE-2024-56449,https://securityvulnerability.io/vulnerability/CVE-2024-56449,Privilege Escalation Vulnerability in Huawei Account Module,"The vulnerability enables a user to gain elevated privileges within Huawei's Account module, potentially compromising service confidentiality. If exploited, it could allow unauthorized access to sensitive data and functionality, making it critical for affected users to apply the latest security patches promptly to mitigate the risk.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0008699999889358878,false,,false,false,false,,false,false,false,,2025-01-08T03:13:25.971Z,0 CVE-2024-56448,https://securityvulnerability.io/vulnerability/CVE-2024-56448,Improper Access Control in Huawei Home Screen Widget Module,"The vulnerability involves improper access control mechanisms within the home screen widget module of Huawei devices. This flaw could lead to unauthorized access or exploitation, potentially compromising user security and affecting the availability of the affected systems. It underscores the importance of implementing robust access control measures in software development to safeguard users against potential attacks.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T03:11:56.159Z,0 CVE-2024-56447,https://securityvulnerability.io/vulnerability/CVE-2024-56447,Improper Permission Control in Huawei's Window Management Module,"The vulnerability involves improper permission control within Huawei's window management module. Exploiting this flaw could potentially compromise service confidentiality, allowing unauthorized access to sensitive information. Users are advised to update to the latest version as a precaution against possible exploitation. For detailed guidance, refer to Huawei's security bulletin.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0008699999889358878,false,,false,false,false,,false,false,false,,2025-01-08T03:03:11.490Z,0 CVE-2024-56442,https://securityvulnerability.io/vulnerability/CVE-2024-56442,NFC Service Module Vulnerability in Huawei Devices,"The NFC service module in Huawei devices presents a vulnerability due to the insufficient implementation of native APIs. This flaw can lead to abnormal behavior of features that rely on the NFC service, potentially impacting user experience and device functionality. It is crucial for users and administrators to remain vigilant and keep their software updated to mitigate potential risks.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T02:20:03.579Z,0 CVE-2024-56441,https://securityvulnerability.io/vulnerability/CVE-2024-56441,Race Condition Vulnerability in Huawei's Bastet Module,"A race condition vulnerability exists within Huawei's Bastet module, which may allow attackers to exploit timing discrepancies in processes. This could lead to significant breaches affecting the confidentiality of services. It highlights the importance of implementing robust security measures to protect sensitive operations from potential timing attacks.",Huawei,"Harmonyos,Emui",5.9,MEDIUM,0.0008699999889358878,false,,false,false,false,,false,false,false,,2025-01-08T02:12:46.961Z,0 CVE-2024-56440,https://securityvulnerability.io/vulnerability/CVE-2024-56440,Permission Control Vulnerability in Huawei Connectivity Module,"A permission control vulnerability exists in Huawei's Connectivity module that may allow unauthorized access to certain features. Successful exploitation could lead to abnormal functionality of these features, posing potential risks to user privacy and system integrity.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T02:08:46.885Z,0 CVE-2024-56438,https://securityvulnerability.io/vulnerability/CVE-2024-56438,Improper Memory Address Protection in HUKS Module Affects Huawei Products,"The HUKS (Huawei Key Storage) module contains a vulnerability due to improper memory address protection. This flaw may allow attackers to exploit the system, potentially leading to unauthorized access or manipulation, ultimately impacting the availability of affected applications and services.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T02:04:06.730Z,0 CVE-2023-52955,https://securityvulnerability.io/vulnerability/CVE-2023-52955,Improper Authentication Vulnerability in ANS System Service Module by Huawei,"An improper authentication vulnerability exists in Huawei's ANS system service module, potentially allowing unauthorized access or abnormal feature performance. Successful exploitation could lead to severe impacts on system integrity and functionality, necessitating immediate attention and remediation.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T02:00:17.658Z,0 CVE-2023-52954,https://securityvulnerability.io/vulnerability/CVE-2023-52954,Improper Permission Control in Gallery Module of Huawei Devices,"The Gallery module in Huawei devices contains a vulnerability that arises from inadequate permission controls. This security flaw can be exploited to impact the availability of the service, potentially allowing unauthorized access or manipulation of gallery content. Users are advised to ensure their devices are updated and to follow best practices in cybersecurity to mitigate risks associated with this vulnerability.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T01:51:55.588Z,0 CVE-2023-52953,https://securityvulnerability.io/vulnerability/CVE-2023-52953,Path Traversal Flaw in Medialibrary Module by Huawei,"A path traversal vulnerability exists in the Medialibrary module developed by Huawei, which can be exploited to gain unauthorized access to file system paths. This can lead to a compromise of both integrity and confidentiality, allowing attackers to read sensitive files outside the intended directories. Organizations using this module should take immediate action to mitigate the risk.",Huawei,"Harmonyos,Emui",9.1,CRITICAL,0.000910000002477318,false,,false,false,false,,false,false,false,,2025-01-08T01:48:23.333Z,0 CVE-2024-56434,https://securityvulnerability.io/vulnerability/CVE-2024-56434,Use-After-Free Vulnerability in Huawei Device Node Access Module,"A Use-After-Free (UAF) vulnerability exists within the device node access module developed by Huawei. This vulnerability could lead to service exceptions, potentially compromising the security and reliability of affected Huawei products. Successful exploitation of this flaw may allow unauthorized access or manipulation of device functions, posing a significant risk to users.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004600000102072954,false,,false,false,false,,false,false,false,,2025-01-08T01:32:32.297Z,0 CVE-2024-54101,https://securityvulnerability.io/vulnerability/CVE-2024-54101,Installation Module Denial of Service Vulnerability Threatens Availability,"Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-12-12T11:38:12.726Z,0 CVE-2024-54100,https://securityvulnerability.io/vulnerability/CVE-2024-54100,Abnormal Feature Performance Due to Improper Access Control,"A vulnerability has been identified in the secure input module of Huawei devices, where improper access control measures may allow unauthorized access to certain features. This issue could lead to abnormal behavior of these functionalities, compromising the integrity and security of the device. It is crucial for users to be aware of this vulnerability and take necessary actions to safeguard their systems.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.00046999999904073775,false,,false,false,false,,,false,false,,2024-12-12T11:25:52.084Z,0 CVE-2024-54099,https://securityvulnerability.io/vulnerability/CVE-2024-54099,Data Integrity and Confidentiality at Risk: File Replacement Vulnerability Affects Several Devices,"A file replacement vulnerability exists in various Huawei devices, allowing unauthorized modification of files. Successful exploitation could compromise the integrity and confidentiality of sensitive information stored on affected devices. This vulnerability underscores the importance of implementing robust security measures to protect against unauthorized file manipulations.",Huawei,"Harmonyos,Emui",7.1,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-12-12T11:23:40.542Z,0 CVE-2024-54098,https://securityvulnerability.io/vulnerability/CVE-2024-54098,Service Integrity at Risk: Vulnerability in System Service Module,A service logic error has been identified in the Huawei System Service Module. This vulnerability could allow attackers to compromise the integrity of services within the system. Proper assessment and remediation steps are essential to ensure that the security of the system and its operations remain intact. Monitoring for irregularities in system behavior is highly recommended to address potential exploitation of this vulnerability.,Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004799999878741801,false,,false,false,false,,,false,false,,2024-12-12T11:13:47.089Z,0 CVE-2024-54097,https://securityvulnerability.io/vulnerability/CVE-2024-54097,Security Vulnerability in HiView Module May Affect Feature Implementation and Integrity,"A security vulnerability has been identified within the HiView module of various Huawei products. This flaw could potentially allow an attacker to exploit the feature implementation of the affected module, leading to concerns regarding the integrity of the system. Users of Huawei products utilizing the HiView module are advised to remain vigilant and apply any available updates. Further details about this vulnerability can be found in the official bulletin.",Huawei,"Harmonyos,Emui",7.5,HIGH,0.0004799999878741801,false,,false,false,false,,,false,false,,2024-12-12T11:11:58.118Z,0 CVE-2024-54096,https://securityvulnerability.io/vulnerability/CVE-2024-54096,MTP Vulnerability: Integrity and Accuracy at Risk,"Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-12-12T11:10:17.921Z,0 CVE-2024-51528,https://securityvulnerability.io/vulnerability/CVE-2024-51528,Super Home Screen Vulnerability May Affect Service Confidentiality,"Vulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-11-05T09:33:14.126Z,0 CVE-2024-51527,https://securityvulnerability.io/vulnerability/CVE-2024-51527,Gallery App Permission Control Vulnerability May Affect Service Confidentiality,"Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-11-05T09:25:27.127Z,0 CVE-2024-51510,https://securityvulnerability.io/vulnerability/CVE-2024-51510,Logo Module Vulnerability: Impact on Service Confidentiality,"Out-of-bounds access vulnerability in the logo module Impact: Successful exploitation of this vulnerability may affect service confidentiality.",Huawei,"Harmonyos,Emui",5.5,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-11-05T08:24:44.011Z,0