CVE-2021-22333

CRITICAL

Huawei EMUI and Magic UI - Remote Code Execution via Array Index Validation Issue

Title source: llm
STIX 2.1

Description

There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute, thus obtaining system permissions.

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0018
EPSS Percentile 39.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-129
Status published
Products (11)
huawei/emui 9.1.0
huawei/emui 9.1.1
huawei/emui 10.0.0
huawei/emui 10.1.0
huawei/emui 10.1.1
huawei/emui 11.0.0
huawei/magic_ui 2.1.1
huawei/magic_ui 3.0.0
huawei/magic_ui 3.1.0
huawei/magic_ui 3.1.1
... and 1 more
Published Jun 03, 2021
Tracked Since Feb 18, 2026