ZeroHour

CVE-2017-8151

CVSS 3.0
6.8 medium
EPSS
<1%p25
Published
()
Modified
Description

Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.

Vendors
huawei
Products
honor 5s firmware
Weakness
CWE-287
Vector
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.