4.6

CVE-2017-17326

Huawei Mate 9 Pro Smartphones with software of LON-AL00BC00B139D; LON-AL00BC00B229 have an activation lock bypass vulnerability. The smartphone is supposed to be activated by the former account after reset if find my phone function is on. The software does not have a sufficient protection of activation lock. Successful exploit could allow an attacker to bypass the activation lock and activate the smartphone by a new account after a series of operation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Mate 9 Pro Fimware Version lon-al00bc00b139d
   Huawei ≫ Mate 9 Pro Version -
Huawei ≫ Mate 9 Pro Fimware Version lon-al00bc00b229
   Huawei ≫ Mate 9 Pro Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.23% 0.141
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.6 0.9 3.6
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171227-01-smartphone-en
Vendor Advisory