Vulnerabilities
Vulnerable Software
Huawei:  Security Vulnerabilities
Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory thus potentially leading code execution in SMM
CVSS Score
7.8
EPSS Score
0.0
Published
2024-05-28
Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory, thus potentially leading code execution in SMM
CVSS Score
7.8
EPSS Score
0.0
Published
2024-05-28
Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26) Arbitrary Memory Corruption in SMI Handler of ThisiServicesSmm SMM module. This can be leveraged by a malicious OS attacker to corrupt arbitrary SMRAM memory and, in turn, lead to code execution in SMM
CVSS Score
7.8
EPSS Score
0.0
Published
2024-05-28
Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26. Memory Corruption in SMI Handler of HddPassword SMM Module. This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
CVSS Score
7.8
EPSS Score
0.0
Published
2024-05-28
Some Huawei smart speakers have a memory overflow vulnerability. Successful exploitation of this vulnerability may cause certain functions to fail.
CVSS Score
7.2
EPSS Score
0.001
Published
2024-05-28
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
CVSS Score
6.4
EPSS Score
0.0
Published
2024-05-14
NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.
CVSS Score
5.9
EPSS Score
0.0
Published
2024-05-14
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
CVSS Score
6.8
EPSS Score
0.0
Published
2024-05-14
Privilege escalation vulnerability in the account module Impact: Successful exploitation of this vulnerability will affect availability.
CVSS Score
6.2
EPSS Score
0.0
Published
2024-05-14
Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affect availability.
CVSS Score
8.4
EPSS Score
0.0
Published
2024-05-14


Contact Us

Shodan ® - All rights reserved