Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4hr7-8p39-3848

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

HUAWEI Mate 20 Pro smartphones versions earlier than 10.0.0.175(C00E69R3P8) have an improper authentication vulnerability. The software does not sufficiently validate the name of apk file in a special condition which could allow an attacker to forge a crafted application as a normal one. Successful exploit could allow the attacker to bypass digital balance function.

HUAWEI Mate 20 Pro smartphones versions earlier than 10.0.0.175(C00E69R3P8) have an improper authentication vulnerability. The software does not sufficiently validate the name of apk file in a special condition which could allow an attacker to forge a crafted application as a normal one. Successful exploit could allow the attacker to bypass digital balance function.

EPSS

Процентиль: 5%
0.00021
Низкий

Связанные уязвимости

CVSS3: 4.6
nvd
около 6 лет назад

HUAWEI Mate 20 Pro smartphones versions earlier than 10.0.0.175(C00E69R3P8) have an improper authentication vulnerability. The software does not sufficiently validate the name of apk file in a special condition which could allow an attacker to forge a crafted application as a normal one. Successful exploit could allow the attacker to bypass digital balance function.

EPSS

Процентиль: 5%
0.00021
Низкий