Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) have an authentication bypass vulnerability. An attacker with high privilege obtains the smart phone and bypass the activation function by some specific operations.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en | Vendor Advisory |
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en | Vendor Advisory |
Configurations
History
21 Nov 2024, 04:12
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en - Vendor Advisory |
Information
Published : 2018-05-10 14:29
Updated : 2024-11-21 04:12
NVD link : CVE-2018-7940
Mitre link : CVE-2018-7940
CVE.ORG link : CVE-2018-7940
JSON object : View
Products Affected
huawei
- mate_9_firmware
- mate_9_pro
- mate_9_pro_firmware
- mate_9
CWE
CWE-287
Improper Authentication