Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

138 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaBaja (3.5)0.22%—Huawei Enjoy 8 Plus FirmwareHuawei Y9 FirmwareHuawei Honor 8X FirmwareHuawei Honor 9 Lite Firmware+214/12/201917/6/2026
There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, Honor 9i, Y6 Pro). The applock does not perform a sufficient authentication in a rare condition. Successful exploit could allow the attacker to use the application locked by applock in an instant.
ModificadaMedia (4.6)0.23%—Huawei Mate 10 FirmwareHuawei Mate 10 PRO FirmwareHuawei Honor V10 FirmwareHuawei Changxiang 7S Firmware+613/12/201917/6/2026
There is an information disclosure vulnerability in certain Huawei smartphones (Mate 10;Mate 10 Pro;Honor V10;Changxiang 7S;P-smart;Changxiang 8 Plus;Y9 2018;Honor 9 Lite;Honor 9i;Mate 9). The software does not properly handle certain information of applications locked by applock in a rare condition. Successful…
ModificadaMedia (5.5)0.84%—Huawei Honor V10 FirmwareHuawei P30 FirmwareHuawei Enjoy 7S FirmwareHuawei Mate 20 Firmware+513/12/201917/6/2026
There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames from the application. An attacker could trick the user into installing, backing up and restoring a malicious application. Successful exploit could cause information disclosure.
ModificadaMedia (4.6)0.22%—Huawei Honor Play Firmware29/11/201917/6/2026
Honor play smartphones with versions earlier than 9.1.0.333(C00E333R1P1T8) have an information disclosure vulnerability in certain Huawei . An attacker could view certain information after a series of operation without unlock the screen lock. Successful exploit could cause an information disclosure condition.
ModificadaBaja (3.3)0.21%—Huawei Honor 10 Lite FirmwareHuawei Honor 8A FirmwareHuawei Y6 Firmware13/11/201917/6/2026
Honor 10 Lite, Honor 8A, Huawei Y6 mobile phones with the versions before 9.1.0.217(C00E215R3P1), the versions before 9.1.0.205(C00E97R1P9), the versions before 9.1.0.205(C00E97R2P2) have an information leak vulnerability. Due to improper function error records of some module, an attacker with the access permission…
ModificadaAlta (7.8)0.65%—Huawei P30 FirmwareHuawei P30 PRO FirmwareHuawei Honor V20 Firmware12/11/201917/6/2026
Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), Versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R1P12), Versions earlier than Princeton-AL10B 9.1.0.233(C00E233R4P3) have a race condition vulnerability. The system does not lock certain…
ModificadaBaja (2.4)0.21%—Huawei Honor Play Firmware12/11/201917/6/2026
Honor play smartphones with versions earlier than Cornell-AL00A 9.1.0.321(C00E320R1P1T8) have an insufficient authentication vulnerability. The system has a logic judge error under certain scenario. Successful exploit could allow the attacker to modify the alarm clock settings after a serious of uncommon operations…
AnalizadaAlta (7.8)72%⚠ Explotación activa💥 ExploitGoogle AndroidDebian LinuxCanonical Ubuntu LinuxNetapp Cloud Backup+7311/10/201917/6/2026
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing…
ModificadaAlta (8.1)2.7%💥 PoCGoogle AndroidApple Iphone OSApple MAC OS XApple Tvos+14314/8/201917/6/2026
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") that can decrypt traffic and inject arbitrary ciphertext without the…
ModificadaBaja (3.3)0.54%—Huawei Honor V20 Firmware8/8/201917/6/2026
Huawei smart phones Honor V20 with the versions before 9.0.1.161(C00E161R2P2) have an information leak vulnerability. An attacker may trick a user into installing a malicious application. Due to coding error during layer information processing, attackers can exploit this vulnerability to obtain some layer information.
ModificadaMedia (5.5)0.63%—Huawei Honor Magic 2 Firmware17/7/201917/6/2026
There is an information disclosure vulnerability on Secure Input of certain Huawei smartphones in Versions earlier than Tony-AL00B 9.1.0.216(C00E214R2P1). The Secure Input does not properly limit certain system privilege. An attacker tricks the user to install a malicious application and successful exploit could…
ModificadaMedia (4.6)0.22%—Huawei Mate 20 X FirmwareHuawei Mate 20 FirmwareHuawei Honor Magic 2 Firmware10/7/201917/6/2026
There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently verify the permission, an attacker could do a certain operation on certain step of setup wizard. Successful exploit could allow the attacker bypass the FRP protection. Affected products: Mate 20 X,…
ModificadaMedia (6.4)0.22%—Huawei Honor View 10 Firmware6/6/201917/6/2026
Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.125(C00E125R2P14T8) have an authorization bypass vulnerability. Due to improper authorization implementation logic, attackers can bypass certain authorization scopes of smart phones by performing specific operations. This vulnerability can be…
ModificadaAlta (7)0.68%—Huawei Honor View 10 FirmwareHuawei Honor 10 FirmwareHuawei Honor Play Firmware6/6/201917/6/2026
There is a race condition vulnerability on Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.156(C00E156R2P14T8), Honor 10 smartphones versions earlier than Columbia-AL10B 9.0.0.156(C00E156R1P20T8) and Honor Play smartphones versions earlier than Cornell-AL00A 9.0.0.156(C00E156R1P13T8). An…
ModificadaMedia (4.3)0.27%—Huawei Honor 7A FirmwareHuawei Honor 9 Lite Firmware27/11/201817/6/2026
There is an information leak vulnerability in some Huawei smartphones. An attacker may do some specific configuration in the smartphone and trick a user into inputting some sensitive information. Due to improper design, successful exploit may cause some information leak.
ModificadaMedia (4.6)0.24%—Huawei G9 Lite FirmwareHuawei Honor 5A FirmwareHuawei Honor 5AHuawei Honor 6X Firmware+112/9/201817/6/2026
Huawei smart phones G9 Lite, Honor 5A, Honor 6X, Honor 8 with the versions before VNS-L53C605B120CUSTC605D103, the versions before CAM-L03C605B143CUSTC605D008, the versions before CAM-L21C10B145, the versions before CAM-L21C185B156, the versions before CAM-L21C223B133, the versions before CAM-L21C432B210, the versions…
ModificadaMedia (5.3)0.37%—Huawei Honor 8 Lite Firmware11/4/201817/6/2026
The Themes App Honor 8 Lite Huawei mobile phones with software of versions before Prague-L31C576B172, versions before Prague-L31C530B160, versions before Prague-L31C432B180 has a man-in-the-middle (MITM) vulnerability due to the use of the insecure HTTP protocol for theme download. An attacker may exploit this…
ModificadaAlta (7.8)0.92%—Huawei Honor 6 FirmwareHuawei P9 Plus Firmware9/3/201817/6/2026
Touchscreen drive in Huawei H60 (Honor 6) Versions earlier than H60-L02_6.12.16 and P9 Plus Versions earlier than VIE-AL10BC00B356 has a stack overflow vulnerabilities. An attacker tricks a user into installing a malicious application on the smart phone, and send given parameter to touchscreen drive to crash the…
ModificadaMedia (4.3)0.81%—Huawei Honor Smart Scale Application Firmware9/3/201817/6/2026
Huawei Honor Smart Scale Application with software of 1.1.1 has an information disclosure vulnerability. The application does not sufficiently restrict the resource which can be accessed by certain protocol. An attacker could trick the user to click a malicious link, successful exploit could cause information…
ModificadaMedia (4.6)0.24%—Huawei Honor V9 Play Firmware9/3/201817/6/2026
Huawei Honor V9 Play smart phones with the versions before Jimmy-AL00AC00B135 have an authentication bypass vulnerability due to the improper design of a component. An attacker who get a user's smart phone can execute specific operation, and delete the fingerprint of the phone without authentication.
ModificadaMedia (6.8)0.33%—Huawei Honor V9 Play Firmware15/2/201817/6/2026
The 'Find Phone' function in Huawei Honor V9 play smart phones with versions earlier than Jimmy-AL00AC00B135 has an authentication bypass vulnerability. Due to improper authentication realization in the 'Find Phone' function. An attacker may exploit the vulnerability to bypass the 'Find Phone' function in order to use…
ModificadaBaja (2.3)0.21%—Huawei Honor 8 Firmware22/12/201717/6/2026
Huawei Honor 8 smartphone with software versions earlier than FRD-L04C567B389 and earlier than FRD-L14C567B389 have a permission control vulnerability due to improper authorization configuration on specific device information.
ModificadaMedia (6.2)0.28%—Huawei Honor 8 FirmwareHuawei Honor V8 FirmwareHuawei Honor 9 FirmwareHuawei Honor V9 Firmware+522/11/201717/6/2026
Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions…
ModificadaMedia (6.2)0.27%—Huawei Honor 8 FirmwareHuawei Honor V8 FirmwareHuawei Honor 9 FirmwareHuawei Honor V9 Firmware+522/11/201717/6/2026
Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions…
ModificadaAlta (7.8)1.0%—Huawei Honor 5C FirmwareHuawei Honor 6X Firmware22/11/201717/6/2026
The driver of honor 5C,honor 6x Huawei smart phones with software of versions earlier than NEM-AL10C00B356, versions earlier than Berlin-L21HNC432B360 have a buffer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege of…