CVE-2018-7947

Huawei mobile phones with versions earlier before Emily-AL00A 8.1.0.153(C00) have an authentication bypass vulnerability. An attacker could trick the user to connect to a malicious device. In the debug mode, the malicious software in the device may exploit the vulnerability to bypass some specific function. Successful exploit may cause some malicious applications to be installed in the mobile phones.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:emily-al00a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:emily-al00a:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:13

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180720-01-mobile-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180720-01-mobile-en - Vendor Advisory

Information

Published : 2018-07-31 14:29

Updated : 2024-11-21 04:13


NVD link : CVE-2018-7947

Mitre link : CVE-2018-7947

CVE.ORG link : CVE-2018-7947


JSON object : View

Products Affected

huawei

  • emily-al00a
  • emily-al00a_firmware
CWE
CWE-287

Improper Authentication