← Back

CVE-2017-15308

nvd nist
Published: Dec 22, 2017Modified: May 13, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Huawei iReader app before 8.0.2.301 has an input validation vulnerability due to insufficient validation on the URL used for loading network data. An attacker can control app access and load malicious websites created by the attacker, and the code in webpages would be loaded and run.

Affected (1)

Products: Huawei: Ireader
1 product
Ireader
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 8.0.2.301

Timeline

No history available yet.