
CVE-2023-52953
https://notcve.org/view.php?id=CVE-2023-52953
08 Jan 2025 — Path traversal vulnerability in the Medialibrary module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. Path traversal vulnerability in the Medialibrary module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. • https://consumer.huawei.com/en/support/bulletin/2025/1 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2021-22484
https://notcve.org/view.php?id=CVE-2021-22484
28 Dec 2024 — Some Huawei wearables have a vulnerability of not verifying the actual data size when reading data. Successful exploitation of this vulnerability may cause a server out of memory (OOM). • https://device.harmonyos.com/en/docs/security/update/security-bulletins-wearables-202108-0000001135186780 • CWE-20: Improper Input Validation CWE-125: Out-of-bounds Read •

CVE-2021-37000
https://notcve.org/view.php?id=CVE-2021-37000
28 Dec 2024 — Some Huawei wearables have a permission management vulnerability. • https://device.harmonyos.com/en/docs/security/update/security-bulletins-wearables-202108-0000001135186780 • CWE-255: Credentials Management Errors CWE-276: Incorrect Default Permissions •

CVE-2024-54101
https://notcve.org/view.php?id=CVE-2024-54101
12 Dec 2024 — Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability. Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability. • https://consumer.huawei.com/en/support/bulletin/2024/12 • CWE-20: Improper Input Validation •

CVE-2024-54100
https://notcve.org/view.php?id=CVE-2024-54100
12 Dec 2024 — Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. • https://consumer.huawei.com/en/support/bulletin/2024/12 • CWE-20: Improper Input Validation •

CVE-2024-54098
https://notcve.org/view.php?id=CVE-2024-54098
12 Dec 2024 — Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity. Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity. • https://consumer.huawei.com/en/support/bulletin/2024/12 • CWE-840: Business Logic Errors •

CVE-2024-54097
https://notcve.org/view.php?id=CVE-2024-54097
12 Dec 2024 — Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature implementation and integrity. Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature implementation and integrity. • https://consumer.huawei.com/en/support/bulletin/2024/12 • CWE-15: External Control of System or Configuration Setting •

CVE-2024-54096
https://notcve.org/view.php?id=CVE-2024-54096
12 Dec 2024 — Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy. Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy. • https://consumer.huawei.com/en/support/bulletin/2024/12 • CWE-284: Improper Access Control •

CVE-2024-51530
https://notcve.org/view.php?id=CVE-2024-51530
05 Nov 2024 — LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality. • https://consumer.huawei.com/en/support/bulletin/2024/11 • CWE-20: Improper Input Validation •

CVE-2024-51529
https://notcve.org/view.php?id=CVE-2024-51529
05 Nov 2024 — Data verification vulnerability in the battery module Impact: Successful exploitation of this vulnerability may affect function stability. Data verification vulnerability in the battery module Impact: Successful exploitation of this vulnerability may affect function stability. • https://consumer.huawei.com/en/support/bulletin/2024/11 • CWE-20: Improper Input Validation •