VARIoT IoT vulnerabilities database

Affected products: vendor, model and version
CWE format is 'CWE-number'. Threat type can be: remote or local
Look up free text in title and description

VAR-202108-2213 CVE-2021-22442 Huawei HarmonyOS Security hole CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
There is an Improper Validation of Integrity Check Value Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei)
VAR-202108-2212 CVE-2021-22443 Huawei HarmonyOS Input validation error vulnerability CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause random address access. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). There is a security vulnerability in Huawei Smartphone
VAR-202108-2211 CVE-2021-22444 Huawei HarmonyOS Input validation error vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause code injection. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei)
VAR-202108-2210 CVE-2021-22445 Huawei HarmonyOS Input validation error vulnerability CVSS V2: 7.8
CVSS V3: 7.5
Severity: HIGH
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). There is a security vulnerability in Huawei Smartphone
VAR-202108-2209 CVE-2021-22446 Huawei Smartphone Security hole CVSS V2: 7.8
CVSS V3: 7.5
Severity: HIGH
There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). There is a security vulnerability in Huawei EMUI/Magic UI
VAR-202108-2208 CVE-2021-22447 Huawei HarmonyOS Code problem vulnerability CVSS V2: 7.8
CVSS V3: 7.5
Severity: HIGH
There is an Improper Check for Unusual or Exceptional Conditions Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). There is a security vulnerability in Huawei EMUI/Magic UI
VAR-202108-2206 CVE-2021-22388 Huawei  Integer overflow vulnerability in smartphones CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed. Huawei An integer overflow vulnerability exists in smartphones.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be put into a state
VAR-202108-2205 CVE-2021-22389 Huawei  Fraud related to unauthorized authentication on smartphones CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is a Permission Control Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed. Huawei Smartphones contain vulnerabilities related to fraudulent authentication.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be put into a state
VAR-202108-2204 CVE-2021-22390 Huawei  Vulnerability in using free memory on smartphones CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed. Huawei A vulnerability exists in smartphones regarding the use of freed memory.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be put into a state
VAR-202108-2203 CVE-2021-22412 Huawei Smartphone Input validation error vulnerability CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause random kernel address access
VAR-202108-2202 CVE-2021-22415 Huawei Smartphone Security hole CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
There is an Incorrect Calculation of Buffer Size Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause kernel exceptions with the code. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). Huawei smartphones have a security flaw that stems from a miscalculated buffer size
VAR-202108-2201 CVE-2021-22427 Huawei HarmonyOS Buffer error vulnerability CVSS V2: 6.8
CVSS V3: 8.1
Severity: HIGH
There is a Heap-based Buffer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). Huawei smartphones have security flaws
VAR-202108-2200 CVE-2021-22428 Huawei HarmonyOS Security hole CVSS V2: 6.8
CVSS V3: 8.1
Severity: HIGH
There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). Huawei smartphones have security flaws
VAR-202108-2199 CVE-2021-22435 Huawei HarmonyOS Security hole CVSS V2: 6.4
CVSS V3: 9.1
Severity: CRITICAL
There is a Configuration Defect Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service integrity and availability. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). Huawei smartphones have a security flaw that stems from a configuration flaw
VAR-202108-2198 CVE-2021-22438 Huawei Smartphone Buffer error vulnerability CVSS V2: 7.5
CVSS V3: 9.8
Severity: CRITICAL
There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause malicious code to be executed. Huawei Smartphone is a smartphone of the Chinese company Huawei (Huawei). There is a security vulnerability in Huawei Smartphone
VAR-202108-2196 CVE-2021-22379 Huawei  smartphone   Integer underflow vulnerability in CVSS V2: 5.0
CVSS V3: 7.5
Severity: HIGH
There is an Integer Underflow (Wrap or Wraparound) Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause DoS of Samgr
VAR-202108-2195 CVE-2021-22384 Huawei  Race condition vulnerabilities in smartphones CVSS V2: 6.8
CVSS V3: 8.1
Severity: HIGH
There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. Huawei There are race condition vulnerabilities in smartphones.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be put into a state
VAR-202108-0402 CVE-2021-21565 Dell PowerScale OneFS  Resource Depletion Vulnerability CVSS V2: 5.0
CVSS V3: 5.3
Severity: MEDIUM
Dell PowerScale OneFS versions 9.1.0.3 and earlier contain a denial of service vulnerability. SmartConnect had an error condition that may be triggered to loop, using CPU and potentially preventing other SmartConnect DNS responses. Dell PowerScale OneFS Is vulnerable to a resource exhaustion.Denial of service (DoS) It may be put into a state
VAR-202108-0400 CVE-2021-21563 Dell PowerScale OneFS  Vulnerability in checking for exceptional conditions in CVSS V2: 4.0
CVSS V3: 6.5
Severity: MEDIUM
Dell EMC PowerScale OneFS versions 8.1.2-9.1.0.x contain an Improper Check for Unusual or Exceptional Conditions in its auditing component.This can lead to an authenticated user with low-privileges to trigger a denial of service event. Dell PowerScale OneFS Exists in an exceptional condition check vulnerability.Denial of service (DoS) It may be put into a state. DELL EMC PowerScale is a scale-out storage system for unstructured data from Dell (DELL)
VAR-202108-0399 CVE-2021-21562 Dell PowerScale OneFS  Untrusted search path vulnerabilities in CVSS V2: 2.1
CVSS V3: 4.4
Severity: MEDIUM
Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE) and (ISI_PRIV_SYS_UPGRADE or ISI_PRIV_AUDIT) to provide an untrusted path which can lead to run resources that are not under the application’s direct control. Dell Technologies Dell PowerScale OneFS is an operating system of Dell Technologies in the United States. Offers the PowerScale OneFS operating system for scale-out NAS. Dell EMC PowerScale OneFS has a code issue vulnerability that allows a user (ISI PRIV LOGIN SSH or ISI PRIV LOGIN CONSOLE) and (ISI PRIV SYS UPGRADE or ISI PRIV AUDIT) to provide an untrusted path that could lead to applications not running directly resources under control