462 results (0.007 seconds)

CVSS: 8.4EPSS: 0%CPEs: 8EXPL: 0

07 Apr 2025 — Deserialization mismatch vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect service integrity. Deserialization mismatch vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect service integrity. • https://consumer.huawei.com/en/support/bulletin/2025/4 • CWE-502: Deserialization of Untrusted Data •

CVSS: 8.4EPSS: 0%CPEs: 10EXPL: 0

04 Mar 2025 — Permission verification bypass vulnerability in the notification module Impact: Successful exploitation of this vulnerability may affect availability. Permission verification bypass vulnerability in the notification module Impact: Successful exploitation of this vulnerability may affect availability. • https://consumer.huawei.com/en/support/bulletin/2025/3 • CWE-20: Improper Input Validation •

CVSS: 7.3EPSS: 0%CPEs: 10EXPL: 0

04 Mar 2025 — Permission bypass vulnerability in the window module Impact: Successful exploitation of this vulnerability may affect service confidentiality. Permission bypass vulnerability in the window module Impact: Successful exploitation of this vulnerability may affect service confidentiality. • https://consumer.huawei.com/en/support/bulletin/2025/3 • CWE-840: Business Logic Errors •

CVSS: 6.6EPSS: 0%CPEs: 9EXPL: 0

08 Jan 2025 — Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-840: Business Logic Errors •

CVSS: 6.7EPSS: 0%CPEs: 9EXPL: 0

08 Jan 2025 — Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability. Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 7.8EPSS: 0%CPEs: 9EXPL: 0

08 Jan 2025 — Vulnerability of improper permission control in the window management module Impact: Successful exploitation of this vulnerability may affect service confidentiality. Vulnerability of improper permission control in the window management module Impact: Successful exploitation of this vulnerability may affect service confidentiality. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-269: Improper Privilege Management •

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

08 Jan 2025 — Vulnerability of native APIs not being implemented in the NFC service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. Vulnerability of native APIs not being implemented in the NFC service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-227: 7PK - API Abuse •

CVSS: 4.1EPSS: 0%CPEs: 9EXPL: 0

08 Jan 2025 — Race condition vulnerability in the Bastet module Impact: Successful exploitation of this vulnerability may affect service confidentiality. Race condition vulnerability in the Bastet module Impact: Successful exploitation of this vulnerability may affect service confidentiality. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 0

08 Jan 2025 — Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 4.4EPSS: 0%CPEs: 6EXPL: 0

08 Jan 2025 — Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability. Vulnerability of improper permission control in the Gallery module Impact: Successful exploitation of this vulnerability may affect availability. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE CATEGORY •