Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-5231

Опубликовано: 13 нояб. 2019
Источник: nvd
CVSS3: 4.6
CVSS2: 2.1
EPSS Низкий

Описание

P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability. The software incorrectly performs an authorization check when a user attempts to perform certain action. Successful exploit could allow the attacker to update a crafted package.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:p30_firmware:*:*:*:*:*:*:*:*
Версия до elle-al00b_9.1.0.186\(c00e180r2p1\) (исключая)
cpe:2.3:h:huawei:p30:-:*:*:*:*:*:*:*

EPSS

Процентиль: 17%
0.00055
Низкий

4.6 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.6
github
больше 3 лет назад

P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability. The software incorrectly performs an authorization check when a user attempts to perform certain action. Successful exploit could allow the attacker to update a crafted package.

EPSS

Процентиль: 17%
0.00055
Низкий

4.6 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-863