Huawei iReader app before 8.0.2.301 has an arbitrary file deletion vulnerability due to the lack of input validation. An attacker can exploit this vulnerability to delete specific files from the SD card.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20171120-01-hwreader-en | Vendor Advisory |
http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20171120-01-hwreader-en | Vendor Advisory |
Configurations
History
21 Nov 2024, 03:14
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20171120-01-hwreader-en - Vendor Advisory |
Information
Published : 2017-12-22 17:29
Updated : 2024-11-21 03:14
NVD link : CVE-2017-15310
Mitre link : CVE-2017-15310
CVE.ORG link : CVE-2017-15310
JSON object : View
Products Affected
huawei
- ireader
CWE
CWE-20
Improper Input Validation