CVE-2017-15351

Description

The Find Phone function in Huawei Honor V9 play smart phones with versions earlier than Jimmy-AL00AC00B135 has an authentication bypass vulnerability. Due to improper authentication realization in the Find Phone function. An attacker may exploit the vulnerability to bypass the Find Phone function in order to use the phone normally.

Risk Information

Base Score
6.8
MODERATE
Vector
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.023

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-15351 are affected in honor_v9_play_firmware jimmy-al00ac00b135NCM
Improper Authentication Vulnerability (CVE-2017-15351)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234