HUAWEI HiLink APP (for IOS) versions earlier before 5.0.25.306 and HUAWEI Tech Support APP (for IOS) versions earlier before 5.0.0 have an information leak vulnerability. When an iPhone with these APPs installed access the Wi-Fi hotpot built by attacker, the attacker can collect the information of iPhone mode and firmware version.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170310-01-hilinkapp-en | Vendor Advisory |
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170310-01-hilinkapp-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 03:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170310-01-hilinkapp-en - Vendor Advisory |
Information
Published : 2017-11-22 19:29
Updated : 2024-11-21 03:24
NVD link : CVE-2017-2730
Mitre link : CVE-2017-2730
CVE.ORG link : CVE-2017-2730
JSON object : View
Products Affected
apple
- iphone_os
huawei
- hilink
- tech_support
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor