Vulnerabilidades em Huawei Technologies Co., Ltd.
380 resultadosAnálise Vexday
O portfólio de vulnerabilidades catalogadas para a Huawei Technologies soma 380 CVEs, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada confirmada no CISA KEV —, o que indica, em termos relativos, menor pressão de exploração imediata. Ainda assim, a atenção deve recair sobre CVE-2017-17215, que apresenta EPSS de 0,7861, sinalizando alta probabilidade de exploração e permanecendo como o risco mais relevante no conjunto atual. A existência de três CVEs com prova de conceito pública reforça a necessidade de acompanhamento contínuo, mesmo na ausência de CVEs críticas formalmente classificadas ou de novas vulnerabilidades nos últimos 90 dias.
CVE-2017-8132—The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input valEPSS 1.4%CVE-2017-8131—The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input valEPSS 1.4%CVE-2017-15344—Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008EPSS 1.4%CVE-2017-15343—Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008EPSS 1.4%CVE-2017-2726—Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buEPSS 1.4%CVE-2017-2724—Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buEPSS 1.4%CVE-2017-8204—The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has a buffer overflow vulnerabiEPSS 1.3%CVE-2017-8122—The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of paraEPSS 1.3%CVE-2018-7994—Some Huawei products IPS Module V500R001C50; NGFW Module V500R001C50; V500R002C10; NIP6300 V500R001C50; NIP6600 V500R001C50; NIP6800 V500R00EPSS 1.3%CVE-2017-15348—Huawei IPS Module V500R001C00, NGFW Module V500R001C00, NIP6300 V500R001C00, NIP6600 V500R001C00, Secospace USG6300 V500R001C00, Secospace UEPSS 1.3%CVE-2017-15317—AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30; AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, V200R008EPSS 1.3%CVE-2017-2729—The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,VersionEPSS 1.3%CVE-2017-8167—Huawei firewall products USG9500 V500R001C50 has a DoS vulnerability.A remote attacker who controls the peer device could exploit the vulnerEPSS 1.3%CVE-2017-15324—Huawei S5700 and S6700 with software of V200R005C00 have a DoS vulnerability due to insufficient validation of the Network Quality Analysis EPSS 1.3%CVE-2017-15319—RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TEEPSS 1.3%CVE-2017-15320—RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TEEPSS 1.3%CVE-2017-15318—RP200 V500R002C00, V600R006C00; TE30 V100R001C10, V500R002C00, V600R006C00; TE40 V500R002C00, V600R006C00; TE50 V500R002C00, V600R006C00; TEEPSS 1.3%CVE-2017-17310—Electronic Numbers to URI Mapping (ENUM) module in some Huawei products DP300 V500R002C00, RP200 V600R006C00, TE30 V100R001C10, V500R002C00,EPSS 1.3%CVE-2017-17257—Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, VEPSS 1.3%CVE-2017-17256—Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R007C01, V200R007C02, VEPSS 1.3%