CVE-2019-5213
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Honor play smartphones with versions earlier than Cornell-AL00A 9.1.0.321(C00E320R1P1T8) have an insufficient authentication vulnerability. The system has a logic judge error under certain scenario. Successful exploit could allow the attacker to modify the alarm clock settings after a serious of uncommon operations without unlock the screen lock.
Teléfonos Inteligentes Honor Play con versiones anteriores a Cornell-AL00A versión 9.1.0.321 (C00E320R1P1T8), presentan una vulnerabilidad de autenticación insuficiente. El sistema presenta un error de juez lógico bajo cierto escenario. Una explotación con éxito podría permitir al atacante modificar la configuración del reloj de alarma posterior a una serie de operaciones poco comunes sin desbloquear el bloqueo de pantalla.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-04 CVE Reserved
- 2019-11-12 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191023-01-smartphone-en | 2019-11-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Honor Play Firmware Search vendor "Huawei" for product "Honor Play Firmware" | < cornell-al00a_9.1.0.321\(c00e320r1p1t8\) Search vendor "Huawei" for product "Honor Play Firmware" and version " < cornell-al00a_9.1.0.321\(c00e320r1p1t8\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Honor Play Search vendor "Huawei" for product "Honor Play" | - | - |
Safe
|