CVE-2017-15351

The 'Find Phone' function in Huawei Honor V9 play smart phones with versions earlier than Jimmy-AL00AC00B135 has an authentication bypass vulnerability. Due to improper authentication realization in the 'Find Phone' function. An attacker may exploit the vulnerability to bypass the 'Find Phone' function in order to use the phone normally.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:honor_v9_play_firmware:jimmy-al00ac00b135:*:*:*:*:*:*:*
cpe:2.3:h:huawei:honor_v9_play:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:14

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171122-01-smartphone-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171122-01-smartphone-en - Vendor Advisory

Information

Published : 2018-02-15 16:29

Updated : 2024-11-21 03:14


NVD link : CVE-2017-15351

Mitre link : CVE-2017-15351

CVE.ORG link : CVE-2017-15351


JSON object : View

Products Affected

huawei

  • honor_v9_play_firmware
  • honor_v9_play
CWE
CWE-287

Improper Authentication