Vulnerabilities
Vulnerable Software
Huawei:  Security Vulnerabilities
The HwAirlink module has a heap overflow vulnerability in processing data packets of the proprietary protocol.Successful exploitation of this vulnerability may allow attackers to obtain process control permissions.
CVSS Score
9.8
EPSS Score
0.005
Published
2022-10-14
The HwAirlink module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause information leakage.
CVSS Score
7.5
EPSS Score
0.004
Published
2022-10-14
The HW_KEYMASTER module has an out-of-bounds access vulnerability in parameter set verification.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
CVSS Score
9.1
EPSS Score
0.004
Published
2022-10-14
The HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
CVSS Score
9.1
EPSS Score
0.004
Published
2022-10-14
A Huawei device has an input verification vulnerability. Successful exploitation of this vulnerability may lead to DoS attacks.Affected product versions include:CV81-WDM FW versions 01.70.49.29.46.
CVSS Score
7.5
EPSS Score
0.005
Published
2022-09-20
There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the device physically and crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficient validation of message, which may be exploited to cause out-of-bounds read and write.
CVSS Score
6.1
EPSS Score
0.003
Published
2022-09-20
A permission bypass vulnerability in Huawei cross device task management could allow an attacker to access certain resource in the attacked devices. Affected product versions include:JAD-AL50 versions 102.0.0.225(C00E220R3P4).
CVSS Score
5.5
EPSS Score
0.002
Published
2022-09-20
There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijacked by attackers.
CVSS Score
4.3
EPSS Score
0.003
Published
2022-09-20
There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may use brute force cracking to obtain passwords, which may cause sensitive system information to be disclosed.
CVSS Score
6.5
EPSS Score
0.002
Published
2022-09-20
Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability will affect the confidentiality and integrity of trusted components.
CVSS Score
9.1
EPSS Score
0.005
Published
2022-09-16


Contact Us

Shodan ® - All rights reserved