PT-2017-15494 · Huawei · Huawei Mate 9

Published

2017-11-22

·

Updated

2019-10-03

·

CVE-2017-2707

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Huawei Mate 9 smartphones with software MHA-AL00AC00B125
Description The issue allows for privilege escalation in the Push module. An attacker can trick a user into saving rich media in a message on the smartphone, potentially exploiting this to delete messages or fake user messages.
Recommendations For Huawei Mate 9 smartphones with software MHA-AL00AC00B125, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-2707

Affected Products

Huawei Mate 9