CVE-2017-17280

Description

NFC (Near Field Communication) module in Huawei mobile phones with software LON-AL00BC00 has an information leak vulnerability. The attacker has to trick a user to do some specific operations and then craft the NFC message to exploit this vulnerability. Successful exploit will cause some information leak.

Risk Information

Base Score
3.5
MODERATE
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.037

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-17280 ,CVE-2017-17285 are affected in lon-al00b_firmware lon-al00bc00NCM
Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-17280)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234