Huawei Security Vulnerabilities (CVEs)
Track 612 security vulnerabilities affecting Huawei products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
This CVE describes an out-of-bounds write vulnerability in a kernel driver module that could allow attackers to cause process exceptions or potentiall...
Nov 8, 2023This CVE describes a missing encryption vulnerability in Huawei's card management module that could allow unauthorized access to sensitive card data. ...
Nov 8, 2023This CVE describes an out-of-bounds vulnerability in the sensor module of Huawei/HarmonyOS devices that could allow attackers to cause mistouch preven...
Nov 8, 2023This vulnerability allows attackers to bypass identity verification in the face unlock module on affected Huawei devices. Successful exploitation coul...
Nov 8, 2023A use-after-free vulnerability (CWE-416) in the idmap module of Huawei HarmonyOS and EMUI systems allows attackers to cause abnormal feature behavior ...
Nov 8, 2023This CVE describes a type confusion vulnerability in Huawei's distributed file module that could allow attackers to cause denial of service through de...
Oct 11, 2023This vulnerability in Huawei's APPWidget module allows apps to run without proper authorization due to insufficient permission verification. It affect...
Oct 11, 2023This CVE describes a mutual exclusion management vulnerability in a kernel module that could allow attackers to cause denial-of-service conditions. Th...
Oct 11, 2023This CVE describes a critical privilege escalation vulnerability in Huawei/HarmonyOS window management modules where permissions are not strictly veri...
Oct 11, 2023This CVE describes a Use-After-Free vulnerability in the surfaceflinger module of Huawei/HarmonyOS devices. Successful exploitation can cause system c...
Oct 11, 2023This CVE describes a broadcast permission control vulnerability in Bluetooth modules that could allow unauthorized access to Bluetooth services. Succe...
Oct 11, 2023This CVE describes an out-of-bounds read vulnerability in Huawei's Bluetooth module that could allow attackers to read sensitive information from memo...
Oct 11, 2023This CVE-2023-44106 is an API permission management vulnerability in Huawei's Fwk-Display module that allows unauthorized access to display framework ...
Oct 11, 2023This CVE describes a vulnerability in Huawei device authentication modules that allows brute-force attacks. Attackers can repeatedly attempt authentic...
Oct 11, 2023This vulnerability in Huawei's security module fails to verify package names' public keys, allowing attackers to potentially install malicious package...
Oct 11, 2023This vulnerability allows attackers to perform brute-force attacks against device authentication modules, potentially compromising service confidentia...
Oct 11, 2023This vulnerability allows 5G SMS messages to be sent without encryption in VPN environments, potentially exposing message contents to interception. It...
Sep 27, 2023CVE-2023-41307 is a memory overwriting vulnerability in Huawei/HarmonyOS security modules that could allow attackers to corrupt memory and cause syste...
Sep 27, 2023A permission control vulnerability in Huawei's MediaPlaybackController module allows attackers to bypass intended restrictions, potentially disrupting...
Sep 27, 2023This CVE describes an unauthorized API access vulnerability in Huawei's PMS (Package Management Service) module that allows attackers to bypass intend...
Sep 25, 2023This CVE describes a command injection vulnerability in the distributed file system module of HarmonyOS. Attackers can exploit this to execute arbitra...
Sep 25, 2023CVE-2023-41293 is a data security classification vulnerability in Huawei's DDMP module that could allow unauthorized access to sensitive information. ...
Sep 25, 2023This CVE describes a permission control vulnerability in the window module of Huawei/HarmonyOS devices that could allow unauthorized access to sensiti...
Sep 25, 2023The DP module in HarmonyOS has a service hijacking vulnerability that allows attackers to intercept or manipulate Super Device services. This affects ...
Sep 25, 2023This CVE-2023-41296 is a missing authorization vulnerability in a Huawei kernel module that allows unauthorized access to kernel functions. Successful...
Sep 25, 2023This CVE describes a buffer overflow vulnerability (CWE-120) in Huawei's PMS module that allows denial-of-service attacks. Successful exploitation cau...
Sep 25, 2023CVE-2023-39407 is a path traversal vulnerability in Watchkit that allows unauthorized file access. Attackers can read or modify files outside intended...
Sep 25, 2023This CVE describes a parameter verification vulnerability in Huawei's installd module that allows unauthorized reading and writing of sandbox files. A...
Aug 13, 2023This vulnerability in Huawei/HarmonyOS window management APIs allows attackers to cause denial of service through improper input validation. Exploitat...
Aug 13, 2023This CVE describes a parameter verification vulnerability in the installd module that allows unauthorized reading and writing of sandbox files. Attack...
Aug 13, 2023This vulnerability involves insufficient input validation in certain window management APIs, allowing attackers to trigger device restarts through cra...
Aug 13, 2023This vulnerability allows API privilege escalation in Huawei/HarmonyOS wifienhance modules, enabling attackers to modify ARP tables without proper aut...
Aug 13, 2023CVE-2023-39397 is a NULL pointer dereference vulnerability in Huawei/HarmonyOS communication systems where improper input validation allows attackers ...
Aug 13, 2023This vulnerability in Huawei's installd module allows attackers to bypass parameter verification, enabling unauthorized reading and writing of sandbox...
Aug 13, 2023This vulnerability involves configuration defects in the media module of certain Huawei products, allowing unauthorized access to affected systems. It...
Aug 13, 2023This vulnerability involves insecure signature verification in Huawei's ServiceWifiResources module, allowing attackers to maliciously modify and over...
Aug 13, 2023This vulnerability allows out-of-bounds read/write operations in the Wi-Fi module, potentially enabling privilege escalation attacks. Successful explo...
Aug 13, 2023This CVE describes an input verification vulnerability in the audio module of Huawei devices running HarmonyOS. Successful exploitation could cause vi...
Aug 13, 2023CVE-2023-39384 is an incomplete permission verification vulnerability in Huawei/HarmonyOS input method modules that could allow unauthorized access to...
Aug 13, 2023This vulnerability in Huawei's PMS module allows attackers to exploit improper input validation, potentially causing denial of service by making the h...
Aug 13, 2023This CVE describes a permission control vulnerability in Huawei audio modules that allows unauthorized access to audio device functions. Successful ex...
Aug 13, 2023This vulnerability allows attackers to intercept modem commands in the atcmdserver module on affected Huawei devices. Attackers can exploit this to re...
Jul 6, 2023This CVE describes an inappropriate authorization vulnerability in Huawei HarmonyOS system apps that could allow unauthorized access to system functio...
Jul 6, 2023CVE-2022-48510 is an input verification vulnerability in Huawei's AMS (Activity Manager Service) module that allows attackers to perform unauthorized ...
Jul 6, 2023CVE-2022-48512 is a critical Use After Free vulnerability in Huawei's Vdecoderservice that allows attackers to execute arbitrary code or cause denial ...
Jul 6, 2023This CVE-2022-48514 vulnerability in the Sepolicy module allows inappropriate permission control on Netlink usage, potentially enabling unauthorized a...
Jul 6, 2023This vulnerability in Huawei's DSoftBus module allows third-party apps to obtain unique values, potentially exposing sensitive information. It affects...
Jul 6, 2023CVE-2022-48519 is an unauthorized access vulnerability in Huawei's SystemUI module that allows attackers to bypass intended access restrictions. This ...
Jul 6, 2023This vulnerability involves improper exception handling in Huawei's communication framework, allowing attackers to trigger abnormal behavior in affect...
Jul 6, 2023This vulnerability in Huawei's communication framework module allows attackers to cause denial-of-service conditions by exploiting incomplete input pa...
Jul 6, 2023Why Monitor Huawei Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 612+ known vulnerabilities affecting Huawei products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Huawei packages in under 60 seconds. No agents required - completely agentless scanning that works across Huawei deployments.
Free vulnerability database: Access detailed information about every Huawei CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Huawei CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions