Huawei Security Vulnerabilities (CVEs)

Track 614 security vulnerabilities affecting Huawei products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

108 Critical
324 High
178 Medium
4 Low
🔔 Get Alerts for Huawei
CVE-2021-40028 7.5

CVE-2021-40028 is an out-of-bounds memory write vulnerability in the eID module of HarmonyOS. This vulnerability could allow attackers to corrupt memo...

Jan 10, 2022
CVE-2021-40031 7.5

This CVE describes a null pointer dereference vulnerability in the camera module of certain Huawei smartphones. Exploitation could allow attackers to ...

Jan 10, 2022
CVE-2021-39993 9.8

This integer overflow vulnerability in Huawei smartphone ACPU components allows attackers to trigger out-of-bounds memory access. Successful exploitat...

Jan 10, 2022
CVE-2021-39998 7.5

This vulnerability in HwConnectivityExService allows attackers to cause denial of service by making concurrent API calls to affected smartphones. Succ...

Jan 10, 2022
CVE-2021-39990 9.8

CVE-2021-39990 is a critical stack-based buffer overflow vulnerability in the screen lock module of HarmonyOS. Successful exploitation could allow att...

Jan 3, 2022
CVE-2021-39967 7.5

This vulnerability allows unauthorized access to broadcast information on affected Huawei smartphones due to improper permission settings. Attackers c...

Jan 3, 2022
CVE-2021-39969 7.5

CVE-2021-39969 is an unauthorized file access vulnerability affecting certain Huawei smartphones running HarmonyOS. This vulnerability allows attacker...

Jan 3, 2022
CVE-2021-39971 7.5

CVE-2021-39971 is an external control vulnerability in HarmonyOS password vault that allows attackers to manipulate system settings. This could lead t...

Jan 3, 2022
CVE-2021-39973 7.5

This CVE describes a null pointer dereference vulnerability in Huawei smartphones that could cause kernel crashes when exploited. It affects Huawei de...

Jan 3, 2022
CVE-2021-39975 7.5

CVE-2021-39975 is a data processing error vulnerability in Hilinksvc that can be exploited to cause denial of service attacks. This affects Huawei Har...

Jan 3, 2022
CVE-2021-39978 7.5

This CVE describes a SQL injection vulnerability in a telephony application that allows attackers to execute arbitrary SQL commands. Successful exploi...

Jan 3, 2022
CVE-2021-39979 9.8

CVE-2021-39979 is a critical code injection vulnerability in HHEE systems that allows attackers to execute arbitrary code. This affects HarmonyOS devi...

Jan 3, 2022
CVE-2021-39982 9.1

CVE-2021-39982 is an improper privilege management vulnerability in Huawei's Phone Manager application that allows attackers to read and write arbitra...

Jan 3, 2022
CVE-2021-39984 7.5

This vulnerability in Huawei's idap module allows attackers to read memory outside intended boundaries, potentially causing denial of service. It affe...

Jan 3, 2022
CVE-2021-39987 7.5

CVE-2021-39987 is a data processing error vulnerability in the HwNearbyMain module of HarmonyOS devices. Successful exploitation can cause process res...

Jan 3, 2022
CVE-2021-39989 7.5

This vulnerability in the HwNearbyMain module of HarmonyOS allows unauthorized actors to access sensitive information, potentially leading to process ...

Jan 3, 2022
CVE-2021-37111 7.5

CVE-2021-37111 is a memory leak vulnerability affecting certain Huawei smartphones running HarmonyOS. Successful exploitation could lead to memory exh...

Jan 3, 2022
CVE-2021-37113 7.5

This CVE describes a privilege escalation vulnerability in the file system component of Huawei smartphones running HarmonyOS. Successful exploitation ...

Jan 3, 2022
CVE-2021-37116 9.1

CVE-2021-37116 is a design weakness vulnerability in PCManager that allows attackers to change subscriber PINs without proper authorization. This affe...

Jan 3, 2022
CVE-2021-37119 7.5

This vulnerability is a service logic flaw in Huawei smartphones that allows attackers to cause a denial-of-service (DoS) condition on the WLAN interf...

Jan 3, 2022
CVE-2021-37120 9.8

CVE-2021-37120 is a double-free vulnerability in Huawei smartphones that allows attackers to cause kernel crashes or potentially escalate privileges. ...

Jan 3, 2022
CVE-2021-37125 7.5

CVE-2021-37125 is an information disclosure vulnerability in HarmonyOS that allows unauthorized actors to access sensitive files. This affects Harmony...

Jan 3, 2022
CVE-2021-37128 9.8

CVE-2021-37128 is a path traversal vulnerability in HwPCAssistant that allows attackers to write arbitrary files to the filesystem. This affects Huawe...

Jan 3, 2022
CVE-2021-37133 7.5

CVE-2021-37133 is an unauthorized file access vulnerability affecting certain Huawei smartphones running HarmonyOS. This vulnerability allows attacker...

Jan 3, 2022
CVE-2021-37098 7.5

CVE-2021-37098 is a data processing error vulnerability in the Hilinksvc service on HarmonyOS devices. Successful exploitation can cause application c...

Jan 3, 2022
CVE-2021-40008 7.5

This memory leak vulnerability in Huawei CloudEngine switches allows attackers to cause memory exhaustion by sending crafted binary messages. Affected...

Dec 13, 2021
CVE-2021-37097 7.5

This CVE describes a code injection vulnerability in Huawei smartphones running HarmonyOS. Successful exploitation could allow an attacker to execute ...

Dec 8, 2021
CVE-2021-37037 7.5

This vulnerability in Huawei smartphones involves invalid address access that can be exploited to cause device restarts. It affects Huawei devices run...

Dec 8, 2021
CVE-2021-37040 9.8

This CVE-2021-37040 is a parameter injection vulnerability in Huawei smartphones that allows privilege escalation when mounting CIFS shares. Attackers...

Dec 8, 2021
CVE-2021-37045 9.8

This CVE describes a use-after-free vulnerability in Huawei smartphones that allows attackers to execute arbitrary kernel-mode code. Successful exploi...

Dec 8, 2021
CVE-2021-37050 7.5

This CVE describes a missing sensitive data encryption vulnerability in Huawei smartphones running HarmonyOS. Attackers could potentially access unenc...

Dec 8, 2021
CVE-2021-37051 9.1

This CVE describes an out-of-bounds read vulnerability in Huawei smartphones that could allow attackers to read memory beyond allocated boundaries. Su...

Dec 8, 2021
CVE-2021-37053 7.5

A service logic vulnerability in Huawei smartphones allows attackers to cause denial of service on WLAN functionality. This affects Huawei devices run...

Dec 8, 2021
CVE-2021-37069 7.4

This CVE describes a race condition vulnerability in Huawei smartphones that could allow attackers to disrupt device availability. The vulnerability a...

Dec 8, 2021
CVE-2021-37075 7.5

This CVE describes a credentials management vulnerability in Huawei smartphones that could allow unauthorized access to sensitive authentication data....

Dec 8, 2021
CVE-2021-37071 7.5

This CVE describes a business logic error vulnerability in Huawei smartphones running HarmonyOS. Successful exploitation could allow an attacker to ca...

Dec 7, 2021
CVE-2021-37076 7.5

This CVE describes an out-of-bounds read vulnerability in Huawei smartphones running HarmonyOS. Successful exploitation could allow an attacker to cau...

Dec 7, 2021
CVE-2021-37078 7.5

This vulnerability in Huawei smartphones allows attackers to cause remote denial of service through an uncaught exception. It affects Huawei devices r...

Dec 7, 2021
CVE-2021-37079 9.1

This vulnerability in Huawei smartphones allows attackers with system_app permission to delete arbitrary files due to improper input validation. It af...

Dec 7, 2021
CVE-2021-37081 7.5

This CVE describes an improper input validation vulnerability in Huawei smartphones running HarmonyOS. Attackers can exploit this vulnerability to cau...

Dec 7, 2021
CVE-2021-37083 7.5

This CVE describes a NULL pointer dereference vulnerability in Huawei smartphones that can cause denial of service attacks when exploited. The vulnera...

Dec 7, 2021
CVE-2021-37084 9.8

This CVE-2021-37084 is an improper input validation vulnerability in Huawei smartphones that allows attackers to invoke other functions of the Smart A...

Dec 7, 2021
CVE-2021-37086 8.6

This vulnerability in Huawei smartphones allows attackers to bypass UID sandbox isolation and read synchronization files from other applications. It a...

Dec 7, 2021
CVE-2021-37087 9.1

This CVE describes a path traversal vulnerability in Huawei smartphones running HarmonyOS that allows attackers to create arbitrary files. Successful ...

Dec 7, 2021
CVE-2021-37089 7.5

This vulnerability in Huawei smartphones running HarmonyOS involves incomplete cleanup of kernel resources, which could allow an attacker to cause a k...

Dec 7, 2021
CVE-2021-37091 7.5

This CVE describes a permissions, privileges, and access controls vulnerability in Huawei smartphones running HarmonyOS. Successful exploitation could...

Dec 7, 2021
CVE-2021-37095 9.8

This integer overflow vulnerability in Huawei smartphones allows attackers to cause denial of service or potentially execute arbitrary code remotely. ...

Dec 7, 2021
CVE-2021-37099 9.1

This path traversal vulnerability in Huawei smartphones allows attackers to delete arbitrary files on affected devices. The vulnerability affects Huaw...

Dec 7, 2021
CVE-2021-37011 9.1

CVE-2021-37011 is a critical stack-based buffer overflow vulnerability in Huawei smartphones running HarmonyOS. Exploitation could allow attackers to ...

Dec 7, 2021
CVE-2021-37020 9.1

This CVE describes a stack-based buffer overflow vulnerability in Huawei smartphones running HarmonyOS. Successful exploitation could allow attackers ...

Dec 7, 2021

Why Monitor Huawei Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 614+ known vulnerabilities affecting Huawei products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Huawei packages in under 60 seconds. No agents required - completely agentless scanning that works across Huawei deployments.

Free vulnerability database: Access detailed information about every Huawei CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Huawei CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Huawei CVEs Free