|
247931
|
7.8 |
HIGH
Local
|
huawei
|
files
|
The Files APP 7.1.1.309 and earlier versions in some Huawei mobile phones has a brute-force password cracking vulnerability due to the improper design of the Safe key database. An unauthorized attack…
|
CWE-200
Information Exposure
|
CVE-2017-2715
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247932
|
8.0 |
HIGH
Adjacent
|
huawei
|
fusionsphere_openstack
|
The GaussDB in FusionSphere OpenStack V100R005C10SPC705 and earlier versions has a buffer overflow vulnerability. An authenticated attacker on the LAN can exploit this vulnerability to execute arbitr…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2714
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247933
|
5.4 |
MEDIUM
Adjacent
|
huawei
|
p9_firmware
|
HUAWEI P9 smartphones with software versions earlier before EVA-L09C432B383, versions earlier before EVA-L09C636B380, versions earlier before VIE-L09C432B370, versions earlier before VIE-L29C636B370 …
|
CWE-20
Improper Input Validation
|
CVE-2017-2713
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247934
|
5.3 |
MEDIUM
Network
|
huawei
|
s3300_firmware
|
S3300 V100R006C05 have an Ethernet in the First Mile (EFM) flapping vulnerability due to the lack of type-length-value (TLV) consistency check. An attacker may craft malformed packets and send them t…
|
CWE-417
Channel and Path Errors
|
CVE-2017-2712
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247935
|
5.5 |
MEDIUM
Local
|
huawei
|
p9_plus_firmware
|
P9 Plus smartphones with software earlier than VIE-AL10C00B352 versions have an input validation vulnerability in the touchscreen Driver. An attacker can tricks a user into installing a malicious app…
|
CWE-20
Improper Input Validation
|
CVE-2017-2711
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247936
|
4.6 |
MEDIUM
Physics
|
huawei
|
beethoven-w09a_firmware crr-l09_firmware
|
BTV-W09C229B002CUSTC229D005,BTV-W09C233B029, earlier than BTV-W09C100B006CUSTC100D002 versions, earlier than BTV-W09C128B003CUSTC128D002 versions, earlier than BTV-W09C199B002CUSTC199D002 versions, e…
|
NVD-CWE-noinfo
|
CVE-2017-2710
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247937
|
5.5 |
MEDIUM
Local
|
huawei
|
higame skytone
|
HiGame with software earlier than 7.3.0 versions, SkyTone with software earlier than 8.1.1 versions have a DoS Vulnerability. An attacker tricks a user into installing a malicious application on the …
|
CWE-20
Improper Input Validation
|
CVE-2017-2709
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247938
|
4.6 |
MEDIUM
Physics
|
huawei
|
nice_firmware
|
The 'Find Phone' function in Nice smartphones with software versions earlier before Nice-AL00C00B0135 has an authentication bypass vulnerability. An unauthenticated attacker may wipe and factory rese…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2017-2708
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247939
|
7.1 |
HIGH
Local
|
huawei
|
mate_9_firmware
|
Mate 9 smartphones with software MHA-AL00AC00B125 have a privilege escalation vulnerability in Push module. An attacker tricks a user to save a rich media into message on the smart phone, which could…
|
CWE-494
Download of Code Without Integrity Check
|
CVE-2017-2707
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247940
|
7.1 |
HIGH
Local
|
huawei
|
mate_9_firmware
|
Mate 9 smartphones with software MHA-AL00AC00B125 have a directory traversal vulnerability in Push module. Since the system does not verify the file name during decompression, system directories are …
|
CWE-22
Path Traversal
|
CVE-2017-2706
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|