ZeroHour

CVE-2019-5251

CVSS 3.1
5.5 medium
EPSS
<1%p56
Published
()
Modified
Description

There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames from the application. An attacker could trick the user into installing, backing up and restoring a malicious application. Successful exploit could cause information disclosure.

Vendors
huawei
Products
honor v10 firmware, p30 firmware, enjoy 7s firmware, mate 20 firmware, honor 9 lite firmware, honor 9i firmware, m6 firmware, p30 pro firmware, honor 20s firmware
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.