Magic Ui
Vendor:
First CVE: Jan 13, 2021 · Active for 5 years
283
Total CVEs
More Total CVEs than 100% of tracked products
94.3
Avg CVEs / Year
Higher CVE frequency than 100% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 60% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Magic Ui over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 13, 2021
5 years ago
Most Recent CVE
Dec 29, 2023
941 days ago
CVE Severity & Scoring
Magic Ui283 CVEs
18%
59%
23%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local29 (10.2%)
Network245 (86.6%)
Unknown0 (0.0%)
Physical1 (0.4%)
Adjacent Network8 (2.8%)
Attack Complexity
Low269 (95.1%)
High14 (4.9%)
Unknown0 (0.0%)
User Interaction
None281 (99.3%)
Unknown0 (0.0%)
Required2 (0.7%)
Privileges Required
Low28 (9.9%)
High0 (0.0%)
None255 (90.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (283 CVEs).
283 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-22432CRITICAL There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerability may cause out-of-bounds access. | Feb 25, 2022 | 9.8 | 31 | NO | NO |
CVE-2021-22429CRITICAL There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause malicious code to be executed. | Feb 25, 2022 | 9.8 | 31 | NO | NO |
CVE-2021-37121CRITICAL There is a Configuration defects in Smartphone.Successful exploitation of this vulnerability may elevate the MEID (IMEI) permission. | Jan 3, 2022 | 9.8 | 31 | NO | NO |
CVE-2021-22444CRITICAL There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause code injection. | Aug 2, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-22389CRITICAL There is a Permission Control Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed. | Aug 2, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-22387CRITICAL There is an Improper Control of Dynamically Managing Code Resources Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to remotely | Aug 2, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-22333CRITICAL There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute, thus obtaining system pe | Jun 3, 2021 | 9.8 | 31 | NO | NO |
CVE-2022-39002CRITICAL Double free vulnerability in the storage module. Successful exploitation of this vulnerability will cause the memory to be freed twice. | Sep 16, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-39000CRITICAL The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vulnerability will cause malicious apps to automatically start upon system startup. | Sep 16, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-22258CRITICAL The Wi-Fi module has an event notification vulnerability.Successful exploitation of this vulnerability may allow third-party applications to intercept event notifications and add i | Apr 11, 2022 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (283 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (283 CVEs).
Media Mentions
Signals from CVEs in this product scope (283 CVEs).
Top CNAs Publishing CVEs For Magic Ui
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.0.0 | 235 | 7.7 | 0.6% | 0 | 0 |
| 3.1.1 | 190 | 7.5 | 0.6% | 0 | 0 |
| 3.1.0 | 148 | 7.6 | 0.6% | 0 | 0 |
| 3.0.0 | 86 | 7.5 | 0.6% | 0 | 0 |
| 2.1.1 | 40 | 7.7 | 0.7% | 0 | 0 |
| 2.1.0 | 1 | 7.5 | 0.6% | 0 | 0 |