cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-9211,https://securityvulnerability.io/vulnerability/CVE-2020-9211,Out-of-Bound Read and Write Vulnerability in Huawei Smartphones,"A vulnerability exists in Huawei smartphones that allows for out-of-bound read and write operations. This issue arises due to insufficient input verification in a specific module. Attackers can exploit this vulnerability by altering certain configurations, which may lead to unauthorized data access or manipulation, ultimately resulting in denial of service. It is essential for users of affected Huawei devices to be aware of this vulnerability and take necessary measures to ensure their security. For further details, refer to Huawei's security advisory.",Huawei,Huawei Mate 30,7.2,HIGH,0.0005000000237487257,false,,false,false,false,,false,false,false,,2024-12-27T09:48:18.593Z,0 CVE-2021-22364,https://securityvulnerability.io/vulnerability/CVE-2021-22364,,There is a denial of service vulnerability in the versions 10.1.0.126(C00E125R5P3) of HUAWEI Mate 30 and 10.1.0.152(C00E136R7P2) of HUAWEI Mate 30 (5G) . A module does not verify certain parameters sufficiently and it leads to some exceptions. Successful exploit could cause a denial of service condition.,Huawei,Huawei Mate 30;huawei Mate 30 (5g),5.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-05-27T12:44:16.000Z,0 CVE-2021-22305,https://securityvulnerability.io/vulnerability/CVE-2021-22305,,"There is a buffer overflow vulnerability in Mate 30 10.1.0.126(C00E125R5P3). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending malicious input through specific module. This could cause buffer overflow, compromising normal service.",Huawei,Huawei Mate 30,3.3,LOW,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-02-06T02:20:01.000Z,0 CVE-2021-22306,https://securityvulnerability.io/vulnerability/CVE-2021-22306,,"There is an out-of-bound read vulnerability in Mate 30 10.0.0.182(C00E180R6P2). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending malicious input through specific module. This could cause out-of-bound, compromising normal service.",Huawei,Huawei Mate 30,4.6,MEDIUM,0.0005799999926239252,false,,false,false,false,,,false,false,,2021-02-06T00:48:18.000Z,0 CVE-2021-22301,https://securityvulnerability.io/vulnerability/CVE-2021-22301,,"Mate 30 10.0.0.203(C00E201R7P2) have a buffer overflow vulnerability. After obtaining the root permission, an attacker can exploit the vulnerability to cause buffer overflow.",Huawei,Huawei Mate 30,6.7,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-02-06T00:15:00.000Z,0 CVE-2021-22307,https://securityvulnerability.io/vulnerability/CVE-2021-22307,,There is a weak algorithm vulnerability in Mate 3010.0.0.203(C00E201R7P2). The protection is insufficient for the modules that should be protected. Local attackers can exploit this vulnerability to affect the integrity of certain module.,Huawei,Huawei Mate 30,5.5,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2021-02-06T00:00:03.000Z,0 CVE-2020-9125,https://securityvulnerability.io/vulnerability/CVE-2020-9125,,"There is an out-of-bound read vulnerability in huawei smartphone Mate 30 versions earlier than 10.1.0.156 (C00E155R7P2). An attacker with specific permission can exploit this vulnerability by sending crafted packet with specific parameter to the target device. Due to insufficient validation of the parameter, successful exploit can cause the device to behave abnormally.",Huawei,Huawei Mate 30,6.7,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-12-29T17:22:09.000Z,0 CVE-2020-9119,https://securityvulnerability.io/vulnerability/CVE-2020-9119,,"There is a privilege escalation vulnerability on some Huawei smart phones due to design defects. The attacker needs to physically contact the mobile phone and obtain higher privileges, and execute relevant commands, resulting in the user's privilege promotion.",Huawei,Huawei Mate 10;huawei Mate 30;huawei Mate 30 Pro;huawei P40;huawei P40 Pro,6.2,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-12-24T15:49:40.000Z,0 CVE-2020-9129,https://securityvulnerability.io/vulnerability/CVE-2020-9129,,"HUAWEI Mate 30 versions earlier than 10.1.0.159(C00E159R7P2) have a vulnerability of improper buffer operation. Due to improper restrictions, local attackers with high privileges can exploit the vulnerability to cause system heap overflow.",Huawei,Huawei Mate 30,6.7,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2020-11-13T14:48:28.000Z,0 CVE-2020-9263,https://securityvulnerability.io/vulnerability/CVE-2020-9263,,"HUAWEI Mate 30 versions earlier than 10.1.0.150(C00E136R5P3) and HUAWEI P30 version earlier than 10.1.0.160(C00E160R2P11) have a use after free vulnerability. There is a condition exists that the system would reference memory after it has been freed, the attacker should trick the user into running a crafted application with common privilege, successful exploit could cause code execution.",Huawei,Huawei Mate 30;huawei P30,7.8,HIGH,0.0008500000112690032,false,,false,false,false,,,false,false,,2020-10-19T19:57:15.000Z,0 CVE-2020-9243,https://securityvulnerability.io/vulnerability/CVE-2020-9243,,"HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a denial of service vulnerability. The system does not properly limit the depth of recursion, an attacker should trick the user installing and execute a malicious application. Successful exploit could cause a denial of service condition.",Huawei,Huawei Mate 30,5.5,MEDIUM,0.0005499999970197678,false,,false,false,false,,,false,false,,2020-08-10T19:01:33.000Z,0 CVE-2020-1839,https://securityvulnerability.io/vulnerability/CVE-2020-1839,,"HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing window exists in which certain pointer members can be modified by another process that is operating concurrently, an attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.",Huawei,Huawei Mate 30,6.3,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-07-06T18:29:42.000Z,0 CVE-2020-9261,https://securityvulnerability.io/vulnerability/CVE-2020-9261,,"HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability. The system does not properly check and transform the type of certain variable, the attacker tricks the user into installing then running a crafted application, successful exploit could cause code execution.",Huawei,Huawei Mate 30,7.8,HIGH,0.0006699999794363976,false,,false,false,false,,,false,false,,2020-07-06T18:19:20.000Z,0 CVE-2020-1838,https://securityvulnerability.io/vulnerability/CVE-2020-1838,,"HUAWEI Mate 30 Pro with versions earlier than 10.1.0.150(C00E136R5P3) have is an improper authentication vulnerability. The device does not sufficiently validate certain credential of user's face, an attacker could craft the credential of the user, successful exploit could allow the attacker to pass the authentication with the crafted credential.",Huawei,Huawei Mate 30 Pro,5.5,MEDIUM,0.0005200000014156103,false,,false,false,false,,,false,false,,2020-07-06T18:08:41.000Z,0 CVE-2020-9262,https://securityvulnerability.io/vulnerability/CVE-2020-9262,,"HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condition exists that the system would reference memory after it has been freed, the attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.",Huawei,Huawei Mate 30,7.8,HIGH,0.0008500000112690032,false,,false,false,false,,,false,false,,2020-07-06T18:05:47.000Z,0 CVE-2020-1835,https://securityvulnerability.io/vulnerability/CVE-2020-1835,,"HUAWEI Mate 30 with versions earlier than 10.1.0.126(C00E125R5P3) have an information disclosure vulnerability. A logic judgment error occurs when the system handling Bluetooth connections, an attacker could craft as an authenticated Bluetooth peer to launch the attack. Successful exploit could cause information disclosure.",Huawei,Huawei Mate 30,6.5,MEDIUM,0.0006600000197067857,false,,false,false,false,,,false,false,,2020-06-18T13:51:21.000Z,0 CVE-2020-1794,https://securityvulnerability.io/vulnerability/CVE-2020-1794,,"There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is locked. Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).",Huawei,Huawei Mate 20;huawei Mate 30 Pro,4.6,MEDIUM,0.0006900000153109431,false,,false,false,false,,,false,false,,2020-03-20T15:00:58.000Z,0 CVE-2020-1793,https://securityvulnerability.io/vulnerability/CVE-2020-1793,,"There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is locked. Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).",Huawei,Huawei Mate 20;huawei Mate 30 Pro,4.6,MEDIUM,0.0006900000153109431,false,,false,false,false,,,false,false,,2020-03-20T14:56:37.000Z,0 CVE-2020-1796,https://securityvulnerability.io/vulnerability/CVE-2020-1796,,"There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not to do.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).",Huawei,Huawei Mate 20;huawei Mate 30 Pro,6.6,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-03-20T14:54:56.000Z,0 CVE-2020-1795,https://securityvulnerability.io/vulnerability/CVE-2020-1795,,There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation when the Digital Balance function is on. Successful exploit could allow the attacker to bypass the Digital Balance limit after a series of operations.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).,Huawei,Huawei Mate 20;huawei Mate 30 Pro,2.4,LOW,0.0005600000149570405,false,,false,false,false,,,false,false,,2020-03-20T14:47:52.000Z,0