CVE-2018-7940

Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) have an authentication bypass vulnerability. An attacker with high privilege obtains the smart phone and bypass the activation function by some specific operations.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:mate_9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:mate_9:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:huawei:mate_9_pro_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:mate_9_pro:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:12

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en - Vendor Advisory

Information

Published : 2018-05-10 14:29

Updated : 2024-11-21 04:12


NVD link : CVE-2018-7940

Mitre link : CVE-2018-7940

CVE.ORG link : CVE-2018-7940


JSON object : View

Products Affected

huawei

  • mate_9_firmware
  • mate_9_pro
  • mate_9_pro_firmware
  • mate_9
CWE
CWE-287

Improper Authentication