Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pjhp-xj66-5m57

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.

Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.

EPSS

Процентиль: 6%
0.00023
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.8
nvd
около 8 лет назад

Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.

EPSS

Процентиль: 6%
0.00023
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-287