← Back

CVE-2019-5251

nvd nist
Published: Dec 13, 2019Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames from the application. An attacker could trick the user into installing, backing up and restoring a malicious application. Successful exploit could cause information disclosure.

Affected (10)

9 products
Honor V10 Firmware
P30 Firmware
Enjoy 7s Firmware
Mate 20 Firmware
Honor 9 Lite Firmware
Honor 9i Firmware
M6 Firmware
P30 Pro Firmware
Honor 20s Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.333\(c00e333r2p1t8\)
Running on/withPlatform Versions
Huawei
Honor V10
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.226\(c00e220r2p1\)
Running on/withPlatform Versions
Huawei
P30
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.130\(c00e115r2p8t8\)
Running on/withPlatform Versions
Huawei
Enjoy 7s
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.139\(c00e133r3p1\)
Running on/withPlatform Versions
Huawei
Mate 20
All versions
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 9.1.0.143\(c636e5r1p5t8\)
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.120\(c00e113r1p6t8\)
Running on/withPlatform Versions
Huawei
Honor 9i
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.1.150\(c00e150r1p150\)
Running on/withPlatform Versions
Huawei
M6
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.226\(c00e210r2p1\)
Running on/withPlatform Versions
Huawei
P30 Pro
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.1.132\(c00e131r6p1\)
Running on/withPlatform Versions
Huawei
Honor 20s
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 9.1.0.130\(c00e112r2p10t8\)
Running on/withPlatform Versions
Huawei
Honor 9 Lite
All versions

Timeline

No history available yet.