Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) have an authentication bypass vulnerability. An attacker with high privilege obtains the smart phone and bypass the activation function by some specific operations.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180509-01-mobile-en | Vendor Advisory |
Information
Published : 2018-05-10 07:29
Updated : 2018-06-13 06:41
NVD link : CVE-2018-7940
Mitre link : CVE-2018-7940
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
huawei
- mate_9_pro
- mate_9
- mate_9_pro_firmware
- mate_9_firmware