Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-2728

Опубликовано: 22 нояб. 2017
Источник: nvd
CVSS3: 6.4
CVSS2: 6.9
EPSS Низкий

Описание

Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and earlier versions have a Bluetooth unlock bypassing vulnerability. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.uawei mobile phones have a Bluetooth unlock bypassing vulnerability due to the lack of validation on Bluetooth devices. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:honor_6x_firmware:*:*:*:*:*:*:*:*
Версия до berlin-l22c636b150 (включая)
cpe:2.3:h:huawei:honor_6x:-:*:*:*:*:*:*:*

EPSS

Процентиль: 6%
0.00025
Низкий

6.4 Medium

CVSS3

6.9 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.4
github
больше 3 лет назад

Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and earlier versions have a Bluetooth unlock bypassing vulnerability. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.uawei mobile phones have a Bluetooth unlock bypassing vulnerability due to the lack of validation on Bluetooth devices. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.

EPSS

Процентиль: 6%
0.00025
Низкий

6.4 Medium

CVSS3

6.9 Medium

CVSS2

Дефекты

NVD-CWE-noinfo