Skip to main content

Vendor archive

huawei CVEs

Beta · best-effort

2,333 CVEs tagged to vendor huawei219 Critical, 1,012 High, 983 Medium, 119 Low, 0 Unrated.

CVE-2017-8131

Published Nov 22, 2017

The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation on four TCP listening ports. An…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-8130

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has an information leak vulnerability. An attacker could exploit them to obtain some sensitive information, causing information…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8129

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8128

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8127

Published Nov 22, 2017

The UMA product with software V200R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation. An attacker could craft malicious links or scripts to l…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8126

Published Nov 22, 2017

The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specifi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8125

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a cross-site scripting (XSS) vulnerability due to insufficient input validation. An attacker could craft malicious links or…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8124

Published Nov 22, 2017

The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specifi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8123

Published Nov 22, 2017

The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specifi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8122

Published Nov 22, 2017

The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specifi…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8121

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has an information leak vulnerability. An attacker could exploit them to obtain some sensitive information, causing information…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8120

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8119

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-8118

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has an information leak vulnerability. An attacker could exploit them to obtain some sensitive information, causing information…

CVSS 2.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-8117

Published Nov 22, 2017

The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-2739

Published Nov 22, 2017

The upgrade package of Huawei Vmall APP Earlier than HwVmall 1.5.3.0 versions is transferred through HTTP. A man in the middle (MITM) can tamper with the upgrade package of Huawei…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-2738

Published Nov 22, 2017

VCM5010 with software versions earlier before V100R002C50SPC100 has an authentication bypass vulnerability. This is due to improper implementation of authentication for accessing…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-2737

Published Nov 22, 2017

VCM5010 with software versions earlier before V100R002C50SPC100 has an arbitrary file upload vulnerability. The software does not validate the files that uploaded. An authenticate…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2736

Published Nov 22, 2017

VCM5010 with software versions earlier before V100R002C50SPC100 has a command injection vulnerability. This is due to insufficient validation of user's input. An authenticated att…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2735

Published Nov 22, 2017

TIT-AL00 smartphones with software versions earlier before TIT-AL00C583B214 have a exposed system interface vulnerability. The software provides a system interface for interaction…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2734

Published Nov 22, 2017

P9 Plus smartphones with software versions earlier before VIE-AL10BC00B386 have a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious appl…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2733

Published Nov 22, 2017

Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file perm…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2732

Published Nov 22, 2017

Huawei Hilink APP Versions earlier before 5.0.25.306 has an information leak vulnerability. An attacker may trick a user into installing a malicious application and application ca…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2731

Published Nov 22, 2017

The vibrator service in P9 Plus smart phones with software versions earlier before VIE-AL10C00B386 has DoS vulnerability. An attacker can tricks a user into installing a malicious…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 2,026-2,050 of 2,333 CVEsPage 82 of 94