2.4
CVE-2019-5308
- EPSS 0.06%
- Veröffentlicht 29.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 04:44:43
- Quelle psirt@huawei.com
- CVE-Watchlists
- Unerledigt
Mate 20 RS smartphones with versions earlier than 9.1.0.135(C786E133R3P1) have an improper authorization vulnerability. The software does not properly restrict certain operation in ADB mode, successful exploit could allow the attacker to switch to third desktop after a series of operation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Mate 20 Rs Firmware Version < 9.1.0.135\(c786e133r3p1\)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.191 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.4 | 0.9 | 1.4 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:N/I:P/A:N
|