Showing 25 vulnerabilities on this page for Magic UI

Signals CISA KEV Ransomware Nuclei
Huawei vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerability may cause a panic reboot.

CWE-787Sep 16, 2022
CVSS7.5v3.1EPSS0.527%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cause the system to restart.

CWE-787Sep 16, 2022
CVSS7.5v3.1EPSS0.559%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability will affect the confidentiality and integrity of trusted components.

CWE-120Sep 16, 2022
CVSS9.1v3.1EPSS0.453%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure.

CWE-22Sep 16, 2022
CVSS7.5v3.1EPSS0.748%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

Sep 16, 2022
CVSS7.5v3.1EPSS0.45%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

Sep 16, 2022
CVSS7.5v3.1EPSS0.45%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.

Sep 16, 2022
CVSS7.5v3.1EPSS0.45%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.

CWE-401Sep 16, 2022
CVSS7.5v3.1EPSS0.564%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.

CWE-401Sep 16, 2022
CVSS7.5v3.1EPSS0.506%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.

CWE-362Sep 16, 2022
CVSS5.9v3.1EPSS0.378%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vulnerability will cause malicious apps to automatically start upon system startup.

Sep 16, 2022
CVSS9.8v3.1EPSS0.551%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.

Aug 9, 2022
CVSS7.5v3.1EPSS0.518%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

CWE-88Aug 9, 2022
CVSS7.5v3.1EPSS0.518%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The AOD module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may cause permission escalation and unauthorized access to files.

CWE-276Aug 9, 2022
CVSS9.8v3.1EPSS0.478%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.

Aug 9, 2022
CVSS7.5v3.1EPSS0.574%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The SystemUI module has a privilege escalation vulnerability. Successful exploitation of this vulnerability can cause malicious applications to pop up windows or run in the background.

CWE-269CWE-863Aug 9, 2022
CVSS9.8v3.1EPSS0.492%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.

CWE-345Aug 9, 2022
CVSS7.5v3.1EPSS0.293%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.

CWE-125Aug 9, 2022
CVSS7.5v3.1EPSS0.561%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.

Aug 9, 2022
CVSS7.5v3.1EPSS0.561%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.

CWE-863Jul 11, 2022
CVSS6.5v3.1EPSS0.275%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.

CWE-287Jul 11, 2022
CVSS6.5v3.1EPSS0.257%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.

CWE-668Jul 11, 2022
CVSS7.5v3.1EPSS0.818%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.

Jul 11, 2022
CVSS7.5v3.1EPSS0.55%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The application security module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may affect data integrity and confidentiality.

CWE-276Jul 11, 2022
CVSS9.1v3.1EPSS0.624%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.

CWE-125CWE-787Jul 11, 2022
CVSS7.5v3.1EPSS0.818%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX