Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
138 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.89% | — | Huawei Honor 20 PRO FirmwareHuawei Princeton-al10d FirmwareHuawei Yale-l21a FirmwareHuawei Yale-l61a Firmware | 29/12/2020 | 17/6/2026 | There is a denial of service vulnerability in some Huawei smartphones. Due to the improper processing of received abnormal messages, remote attackers may exploit this vulnerability to cause a denial of service (DoS) on the specific module. | |
| Modificada | Alta (7.8) | 0.83% | — | Huawei Honor 20 PRO FirmwareHuawei Mate 20 FirmwareHuawei Mate 20 PRO FirmwareHuawei Mate 20 X Firmware+9 | 7/12/2020 | 17/6/2026 | There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which is passed from user that would cause buffer overflow. The attacker should trick the user into installing and running a malicious application with a high privilege,… | |
| Modificada | Media (5.5) | 0.24% | — | Huawei Honor 20 PRO FirmwareHuawei Honor View 20 FirmwareHuawei Oxfords-an00a FirmwareHuawei Princeton-al10b Firmware+6 | 3/9/2020 | 17/6/2026 | Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 10.1.0.231(C10E3R3P2),Versions earlier than 10.1.0.231(C185E3R5P1),Versions earlier than 10.1.0.231(C636E3R3P1);Versions earlier than 10.1.0.212(C432E10R3P4),Versions earlier than 10.1.0.213(C636E3R4P3),Versions earlier… | |
| Modificada | Media (6.8) | 0.23% | — | Huawei Mate 20 FirmwareHuawei Mate 20 PRO FirmwareHuawei Mate 20 X FirmwareHuawei P30 Firmware+6 | 11/8/2020 | 17/6/2026 | HUAWEI Mate 20 versions Versions earlier than 10.1.0.160(C00E160R3P8);HUAWEI Mate 20 Pro versions Versions earlier than 10.1.0.270(C431E7R1P5),Versions earlier than 10.1.0.270(C635E3R1P5),Versions earlier than 10.1.0.273(C636E7R2P4);HUAWEI Mate 20 X versions Versions earlier than 10.1.0.160(C00E160R2P8);HUAWEI P30… | |
| Modificada | Media (6.5) | 0.79% | — | Huawei Honor V30 Firmware | 17/7/2020 | 17/6/2026 | Huawei Honor V30 smartphones with versions earlier than 10.1.0.212(C00E210R5P1) have an improper authentication vulnerability. The system does not sufficiently validate certain parameter passed from the bottom level, the attacker should trick the user into installing a malicious application and control the bottom… | |
| Modificada | Media (5.5) | 0.47% | — | Huawei Honor 10 Firmware | 17/7/2020 | 17/6/2026 | Huawei Honor 10 smartphones with versions earlier than 10.0.0.178(C00E178R1P4) have a denial of service vulnerability. Certain service in the system does not sufficiently validate certain parameter which is received, the attacker should trick the user into installing a malicious application, successful exploit could… | |
| Modificada | Media (4.6) | 0.21% | — | Huawei Alp-al00b FirmwareHuawei Alp-l09 FirmwareHuawei Alp-l29 FirmwareHuawei Anne-al00 Firmware+24 | 8/6/2020 | 17/6/2026 | Huawei smart phones have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker login the Talkback mode and can perform some operations to install a third-Party application. Affected products can be found in… | |
| Modificada | Media (5.3) | 0.73% | — | Huawei Honor 20 PRO FirmwareHuawei Honor View 20 FirmwareHuawei Honor 20 Firmware | 5/6/2020 | 17/6/2026 | Huawei Smartphones HONOR 20 PRO;Honor View 20;HONOR 20 have an improper handling of exceptional condition Vulnerability. A component cannot deal with an exception correctly. Attackers can exploit this vulnerability by sending malformed message. This could compromise normal service of affected phones. | |
| Modificada | Baja (2.4) | 0.25% | — | Huawei Honor 9X Firmware | 29/5/2020 | 17/6/2026 | Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability. A logic error occurs when handling clock function, an attacker should do a series of crafted operations quickly before the phone is unlocked, successful exploit could allow the attacker to access clock… | |
| Modificada | Media (6.5) | 0.34% | — | Huawei Anne-al00 FirmwareHuawei Berkeley-l09 FirmwareHuawei Cd16-10 FirmwareHuawei Cd17-10 Firmware+14 | 21/5/2020 | 17/6/2026 | There is an information leakage vulnerability in some Huawei products. An unauthenticated, adjacent attacker could exploit this vulnerability to decrypt data. Successful exploitation may leak information randomly. Affected product versions include: Anne-AL00 Versions earlier than 9.1.0.331(C675E9R1P3T8); Berkeley-L09… | |
| Modificada | Alta (7.1) | 0.54% | — | Huawei Honor View 20 FirmwareHuawei Honor 20 FirmwareHuawei Honor 20 PRO FirmwareHuawei Honor Magic2 Firmware | 15/5/2020 | 17/6/2026 | Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 smartphones with versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.176(C00E60R2P11);9.1.0.135(C00E133R2P1); versions earlier than 10.1.0.123(C431E22R3P5),… | |
| Modificada | Media (5.3) | 0.32% | — | Huawei Alp-al00b FirmwareHuawei Alp-l09 FirmwareHuawei Alp-l29 FirmwareHuawei Bla-l29c Firmware+43 | 27/4/2020 | 17/6/2026 | There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices. Due to insufficient input validation of two values when parsing the messages, successful exploit may cause device abnormal. This is 2… | |
| Modificada | Media (5.3) | 0.32% | — | Huawei Alp-al00b FirmwareHuawei Alp-l09 FirmwareHuawei Alp-l29 FirmwareHuawei Bla-l29c Firmware+43 | 27/4/2020 | 17/6/2026 | There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices. Due to insufficient input validation of two values when parsing the messages, successful exploit may cause device abnormal. This is 1… | |
| Modificada | Alta (7.1) | 0.62% | — | Huawei Honor V10 Firmware | 27/4/2020 | 17/6/2026 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters received, that would lead to several bytes out of bound read. Successful exploit may cause information disclosure or service… | |
| Modificada | Alta (7.1) | 0.62% | — | Huawei Honor V10 Firmware | 27/4/2020 | 17/6/2026 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters received, that would lead to several bytes out of bound read. Successful exploit may cause information disclosure or service… | |
| Modificada | Alta (7.1) | 0.62% | — | Huawei Honor V10 Firmware | 27/4/2020 | 17/6/2026 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters received, that would lead to several bytes out of bound read. Successful exploit may cause information disclosure or service… | |
| Modificada | Media (5.3) | 0.32% | — | Huawei Honor V20 Firmware | 20/4/2020 | 17/6/2026 | Huawei smartphones Honor V20 with versions earlier than 10.0.0.179(C636E3R4P3),versions earlier than 10.0.0.180(C185E3R3P3),versions earlier than 10.0.0.180(C432E10R3P4) have an information disclosure vulnerability. The device does not sufficiently validate the identity of smart wearable device in certain specific… | |
| Modificada | Media (5.5) | 0.22% | — | Huawei Honor V30 Firmware | 12/3/2020 | 17/6/2026 | Huawei smartphone Honor V30 with versions earlier than OxfordS-AN00A 10.0.1.167(C00E166R4P1) have an improper authentication vulnerability. Authentication to target component is improper when device performs an operation. Attackers exploit this vulnerability to obtain some information by loading malicious application,… | |
| Analizada | Alta (7.8) | 1.4% | ⚠ Explotación activa💥 PoC | Google AndroidHuawei Berkeley-l09 FirmwareHuawei Columbia-al10b FirmwareHuawei Columbia-l29d Firmware+25 | 10/3/2020 | 17/6/2026 | In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for… | |
| Modificada | Media (5.5) | 0.48% | — | Huawei Honor V10 Firmware | 28/2/2020 | 17/6/2026 | Honor V10 smartphones with versions earlier than BKL-AL20 10.0.0.156(C00E156R2P4) and versions earlier than BKL-L09 10.0.0.146(C432E4R1P4) have an out of bounds write vulnerability. The software writes data past the end of the intended buffer because of insufficient validation of certain parameter when initializing… | |
| Modificada | Media (4.6) | 0.21% | — | Huawei Mate 20 RS FirmwareHuawei Mate 20 X FirmwareHuawei Honor Magic2 FirmwareHuawei Ever-l29b Firmware | 18/2/2020 | 17/6/2026 | Huawei mobile phones Ever-L29B versions earlier than 10.0.0.180(C185E6R3P3), earlier than 10.0.0.180(C432E6R1P7), earlier than 10.0.0.180(C636E5R2P3); HUAWEI Mate 20 RS versions earlier than 10.0.0.175(C786E70R3P8); HUAWEI Mate 20 X versions earlier than 10.0.0.176(C00E70R2P8); and Honor Magic2 versions earlier than… | |
| Modificada | Alta (8.8) | 6.1% | 💥 PoC | Google AndroidHuawei Mate 20 FirmwareHuawei Mate 20 PRO FirmwareHuawei Mate 20 X Firmware+18 | 13/2/2020 | 17/6/2026 | In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0… | |
| Modificada | Media (5.5) | 0.59% | — | Huawei Honor V30 Firmware | 21/1/2020 | 17/6/2026 | Honor V30 smartphones with versions earlier than 10.0.1.135(C00E130R4P1) have an improper authentication vulnerability. Certain applications do not properly validate the identity of another application who would call its interface. An attacker could trick the user into installing a malicious application. Successful… | |
| Modificada | Media (4.4) | 0.11% | — | Huawei Honor Magic2 Firmware | 9/1/2020 | 17/6/2026 | Huawei Honor Magic2 mobile phones with versions earlier than 10.0.0.175(C00E59R2P11) have an information leak vulnerability. Due to a module using weak encryption tool, an attacker with the root permission may exploit the vulnerability to obtain some information. | |
| Modificada | Media (5.5) | 0.48% | — | Huawei Mate 10 PRO FirmwareHuawei Honor V10 FirmwareHuawei Honor 10 FirmwareHuawei Nova 4 Firmware | 3/1/2020 | 17/6/2026 | Mate 10 Pro;Honor V10;Honor 10;Nova 4 smartphones have a denial of service vulnerability. The system does not properly check the status of certain module during certain operations, an attacker should trick the user into installing a malicious application, successful exploit could cause reboot of the smartphone. |