Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8791

Опубликовано: 02 апр. 2017
Источник: nvd
CVSS3: 7.1
CVSS2: 6.2
EPSS Низкий

Описание

Huawei Mate 8 phones with software Versions before NXT-AL10C00B386, Versions before NXT-CL00C92B386, Versions before NXT-DL00C17B386, Versions before NXT-TL00C01B386; Mate S phones with software Versions before CRR-CL00C92B368, Versions before CRR-CL20C92B368, Versions before CRR-TL00C01B368, Versions before CRR-UL00C00B368, Versions before CRR-UL20C00B368; and P8 phones with software Versions before GRA-TL00C01B366, Versions before GRA-CL00C92B366, Versions before GRA-CL10C92B366, Versions before GRA-UL00C00B366, Versions before GRA-UL10C00B366 allow attackers with graphic or Camera privilege to crash the system or escalate privilege.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:mate_s_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:mate_s:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:huawei:mate_8_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:mate_8:-:*:*:*:*:*:*:*
Конфигурация 3

Одновременно

cpe:2.3:o:huawei:p8_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p8:-:*:*:*:*:*:*:*

EPSS

Процентиль: 10%
0.00036
Низкий

7.1 High

CVSS3

6.2 Medium

CVSS2

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.1
github
больше 3 лет назад

Huawei Mate 8 phones with software Versions before NXT-AL10C00B386, Versions before NXT-CL00C92B386, Versions before NXT-DL00C17B386, Versions before NXT-TL00C01B386; Mate S phones with software Versions before CRR-CL00C92B368, Versions before CRR-CL20C92B368, Versions before CRR-TL00C01B368, Versions before CRR-UL00C00B368, Versions before CRR-UL20C00B368; and P8 phones with software Versions before GRA-TL00C01B366, Versions before GRA-CL00C92B366, Versions before GRA-CL10C92B366, Versions before GRA-UL00C00B366, Versions before GRA-UL10C00B366 allow attackers with graphic or Camera privilege to crash the system or escalate privilege.

EPSS

Процентиль: 10%
0.00036
Низкий

7.1 High

CVSS3

6.2 Medium

CVSS2

Дефекты

CWE-284