CVE-2016-3677

The Huawei Wear App application before 15.0.0.307 for Android does not validate SSL certificates, which allows local users to have unspecified impact via unknown vectors, aka HWPSIRT-2016-03008.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:huawei:hilink_app:-:*:*:*:*:*:*:*
cpe:2.3:a:huawei:wear_app:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:50

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160419-01-wear-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160419-01-wear-en - Vendor Advisory
References () http://www.securityfocus.com/bid/86536 - () http://www.securityfocus.com/bid/86536 -

Information

Published : 2016-06-13 14:59

Updated : 2024-11-21 02:50


NVD link : CVE-2016-3677

Mitre link : CVE-2016-3677

CVE.ORG link : CVE-2016-3677


JSON object : View

Products Affected

huawei

  • hilink_app
  • wear_app
CWE
CWE-254

7PK - Security Features

CWE-345

Insufficient Verification of Data Authenticity