Vulnerabilities > Huawei > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-2733 Information Exposure vulnerability in Huawei Honor 6X Firmware
Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file permission configuration.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2732 Information Exposure vulnerability in Huawei Hilink
Huawei Hilink APP Versions earlier before 5.0.25.306 has an information leak vulnerability.
local
low complexity
huawei CWE-200
5.5
2017-11-22 CVE-2017-2731 Improper Input Validation vulnerability in Huawei P9 Plus Firmware
The vibrator service in P9 Plus smart phones with software versions earlier before VIE-AL10C00B386 has DoS vulnerability.
local
low complexity
huawei CWE-20
5.5
2017-11-22 CVE-2017-2728 Unspecified vulnerability in Huawei Honor 6X Firmware
Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and earlier versions have a Bluetooth unlock bypassing vulnerability.
high complexity
huawei
6.4
2017-11-22 CVE-2017-2727 Unspecified vulnerability in Huawei P9 Firmware
Huawei P9 smart phones with software versions earlier before EVA-AL00C00B365, versions earlier before EVA-AL10C00B365,Versions earlier before EVA-CL00C92B365, versions earlier before EVA-DL00C17B365, versions earlier before EVA-TL00C01B365 have a privilege escalation vulnerability.
low complexity
huawei
4.3
2017-11-22 CVE-2017-2723 Cleartext Storage of Sensitive Information vulnerability in Huawei Files 7.1.1.308
The Files APP 7.1.1.308 and earlier versions in some Huawei mobile phones has a vulnerability of plaintext storage of users' Safe passwords.
local
low complexity
huawei CWE-312
6.7
2017-11-22 CVE-2017-2721 Improper Authentication vulnerability in Huawei products
Some Huawei smart phones with software Berlin-L21C10B130,Berlin-L21C185B133,Berlin-L21HNC10B131,Berlin-L21HNC185B140,Berlin-L21HNC432B151,Berlin-L22C636B160,Berlin-L22HNC636B130,Berlin-L22HNC675B150CUSTC675D001,Berlin-L23C605B131,Berlin-L24HNC567B110,FRD-L02C432B120,FRD-L02C635B130,FRD-L02C675B170CUSTC675D001,FRD-L04C567B162,FRD-L04C605B131,FRD-L09C10B130,FRD-L09C185B130,FRD-L09C432B131,FRD-L09C636B130,FRD-L14C567B162,FRD-L19C10B130,FRD-L19C432B131,FRD-L19C636B130 have a factory Reset Protection (FRP) bypass security vulnerability.
low complexity
huawei CWE-287
4.6
2017-11-22 CVE-2017-2720 Use of Hard-coded Credentials vulnerability in Huawei Fusionsphere Openstack V100R006C00
FusionSphere OpenStack V100R006C00 has an information exposure vulnerability.
network
low complexity
huawei CWE-798
5.3
2017-11-22 CVE-2017-2717 Integer Overflow or Wraparound vulnerability in Huawei Honor 8 PRO Firmware Dukel09C10B120/Dukel09C432B120/Dukel09C636B120
honor 8 Pro with software Duke-L09C10B120 and earlier versions,Duke-L09C432B120 and earlier versions,Duke-L09C636B120 and earlier versions has an integer overflow vulnerability.
low complexity
huawei CWE-190
6.5
2017-11-22 CVE-2017-2713 Improper Input Validation vulnerability in Huawei P9 Firmware
HUAWEI P9 smartphones with software versions earlier before EVA-L09C432B383, versions earlier before EVA-L09C636B380, versions earlier before VIE-L09C432B370, versions earlier before VIE-L29C636B370 have an insufficient input validation vulnerability.
low complexity
huawei CWE-20
5.4