Huawei PC client software HiSuite 4.0.5.300OVE has a dynamic link library (DLL) hijack vulnerability; an attacker can make the system load malicious DLL files to execute arbitrary code.
Huawei PC client software HiSuite 4.0.5.300OVE uses insecure HTTP for upgrade software package download and does not check the integrity of the software package before installing; an attacker can launch an MITM attack to interrupt or replace the downloaded software package and further compromise the PC.
Huawei PC client software HiSuite 4.0.5.300OVE has an information leak vulnerability; an attacker who can log in to the system can copy out the user's proxy password, causing information leaks.