Skip to main content

Vendor archive

huawei CVEs

Beta · best-effort

2,333 CVEs tagged to vendor huawei219 Critical, 1,012 High, 983 Medium, 119 Low, 0 Unrated.

CVE-2017-15329

Published Feb 15, 2018

Huawei UMA V200R001C00 has a SQL injection vulnerability in the operation and maintenance module. An attacker logs in to the system as a common user and sends crafted HTTP request…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15328

Published Dec 22, 2017

Huawei HG8245H version earlier than V300R018C00SPC110 has an authentication bypass vulnerability. An attacker can access a specific URL of the affect product. Due to improper veri…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15321

Published Dec 22, 2017

Huawei FusionSphere OpenStack V100R006C000SPC102 (NFV) has an information leak vulnerability due to the use of a low version transmission protocol by default. An attacker could in…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-15313

Published Dec 22, 2017

Huawei SmartCare V200R003C10 has a CSV injection vulnerability. An remote authenticated attacker could inject malicious CSV expression to the affected device.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15312

Published Dec 22, 2017

Huawei SmartCare V200R003C10 has a stored XSS (cross-site scripting) vulnerability in the dashboard module. A remote authenticated attacker could exploit this vulnerability to inj…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-15310

Published Dec 22, 2017

Huawei iReader app before 8.0.2.301 has an arbitrary file deletion vulnerability due to the lack of input validation. An attacker can exploit this vulnerability to delete specific…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-15309

Published Dec 22, 2017

Huawei iReader app before 8.0.2.301 has a path traversal vulnerability due to insufficient validation on file storage paths. An attacker can exploit this vulnerability to store do…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15308

Published Dec 22, 2017

Huawei iReader app before 8.0.2.301 has an input validation vulnerability due to insufficient validation on the URL used for loading network data. An attacker can control app acce…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15307

Published Dec 22, 2017

Huawei Honor 8 smartphone with software versions earlier than FRD-L04C567B389 and earlier than FRD-L14C567B389 have a permission control vulnerability due to improper authorizatio…

CVSS 2.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-8216

Published Nov 22, 2017

Warsaw Huawei Smart phones with software of versions earlier than Warsaw-AL00C00B180, versions earlier than Warsaw-TL10C01B180 have a permission control vulnerability. Due to impr…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8215

Published Nov 22, 2017

Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00…

CVSS 6.2 · Medium

CVE-2017-8213

Published Nov 22, 2017

Huawei SMC2.0 with software of V100R003C10, V100R005C00SPC100, V100R005C00SPC101B001T, V100R005C00SPC102, V100R005C00SPC103, V100R005C00SPC200, V100R005C00SPC201T, V500R002C00, V6…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1,926-1,950 of 2,333 CVEsPage 78 of 94