5 results (0.002 seconds)

CVSS: 7.8EPSS: 0%CPEs: 20EXPL: 0

13 Nov 2019 — Bastet module of some Huawei smartphones with Versions earlier than Emily-AL00A 9.0.0.182(C00E82R1P21), Versions earlier than Emily-TL00B 9.0.0.182(C01E82R1P21), Versions earlier than Emily-L09C 9.0.0.203(C432E7R1P11), Versions earlier than Emily-L29C 9.0.0.203(C432E7R1P11), Versions earlier than Emily-L29C 9.0.0.202(C185E2R1P12) have a double free vulnerability. An attacker tricks the user into installing a malicious application, which frees on the same memory address twice. Successful exploit could result... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190220-01-smartphone-en • CWE-415: Double Free •

CVSS: 6.8EPSS: 0%CPEs: 2EXPL: 0

13 Nov 2018 — The radio module of some Huawei smartphones Emily-AL00A The versions before 8.1.0.171(C00) have a lock-screen bypass vulnerability. An unauthenticated attacker could start third-part input method APP through certain operations to bypass lock-screen by exploit this vulnerability. El módulo radio de algunos smartphones Huawei Emily-AL00A en versiones anteriores a la 8.1.0.171(C00) tiene una vulnerabilidad de omisión de pantalla de bloqueo. Un atacante no autenticado podría iniciar aplicaciones de método de en... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20181105-01-smartphone-en • CWE-863: Incorrect Authorization •

CVSS: 4.9EPSS: 0%CPEs: 43EXPL: 0

23 Oct 2018 — Some Huawei smart phones ALP-AL00B 8.0.0.106(C00), 8.0.0.113(SP2C00), 8.0.0.113(SP3C00), 8.0.0.113(SP7C00), 8.0.0.118(C00), 8.0.0.120(SP2C00), 8.0.0.125(SP1C00), 8.0.0.125(SP3C00), 8.0.0.126(SP2C00), 8.0.0.126(SP5C00), 8.0.0.127(SP1C00), 8.0.0.128(SP2C00), ALP-AL00B-RSC 1.0.0.2, BLA-TL00B 8.0.0.113(SP7C01), 8.0.0.118(C01), 8.0.0.120(SP2C01), 8.0.0.125(SP1C01), 8.0.0.125(SP2C01), 8.0.0.125(SP3C01), 8.0.0.126(SP2C01), 8.0.0.126(SP5C01), 8.0.0.127(SP1C01), 8.0.0.128(SP2C01), 8.0.0.129(SP2C01), Charlotte-AL00A ... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180822-01-frpbypass-en •

CVSS: 4.4EPSS: 0%CPEs: 2EXPL: 0

31 Jul 2018 — Huawei mobile phones with versions earlier before Emily-AL00A 8.1.0.153(C00) have an authentication bypass vulnerability. An attacker could trick the user to connect to a malicious device. In the debug mode, the malicious software in the device may exploit the vulnerability to bypass some specific function. Successful exploit may cause some malicious applications to be installed in the mobile phones. Los teléfonos móviles Huawei con versiones anteriores a Emily-AL00A 8.1.0.153(C00) tienen una vulnerabilidad... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180720-01-mobile-en • CWE-287: Improper Authentication •

CVSS: 7.2EPSS: 0%CPEs: 3EXPL: 0

05 Jul 2018 — Huawei smart phones Emily-AL00A with software 8.1.0.106(SP2C00) and 8.1.0.107(SP5C00) have a Factory Reset Protection (FRP) bypass vulnerability. An attacker gets some user's smart phone and performs some special operations in the guide function. The attacker may exploit the vulnerability to bypass FRP function and use the phone normally. Los smartphones Huawei con software Emily-AL00A en versiones 8.1.0.106(SP2C00) y 8.1.0.107(SP5C00) tienen una vulnerabilidad de omisión de Factory Reset Protection (FRP). ... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180622-01-bypass-en •