| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Permission management vulnerability in the network management module. Impact: Successful exploitation of this vulnerability may affect service integrity. |
| Permission control vulnerability in the clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
| Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect integrity and confidentiality. |
| Permission control vulnerability in the file preview module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
| Path traversal vulnerability in the SMS app. Impact: Successful exploitation of this vulnerability may affect availability. |
| DoS vulnerability in the browser kernel. Impact: Successful exploitation of this vulnerability may affect availability. |
| UAF vulnerability in the package management module. Impact: Successful exploitation of this vulnerability may affect service integrity. |
| Logic bypass vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability. |
| Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability. |
| UAF vulnerability in the package management module. Impact: Successful exploitation of this vulnerability may affect service integrity. |
| Permission control vulnerability in the audio framework. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
| DoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affect availability. |
| Out-of-bounds write vulnerability in the IPC module. Impact: Successful exploitation of this vulnerability may affect availability. |
| Permission control vulnerability in service notifications. Impact: Successful exploitation of this vulnerability may affect availability. |
| Race condition vulnerability in the IPC module. Impact: Successful exploitation of this vulnerability may affect availability. |
| Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability may affect availability. |
| The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force approach involving LSB values, aka the "Bar Mitzvah" issue. |
| Huawei HG630 V2 router contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain administrative access by retrieving the device serial number. Attackers can query the /api/system/deviceinfo endpoint without authentication to extract the SerialNumber field, then use the last 8 characters as the default password to log in to the router. |
| Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability. |
| Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |