PT-2018-5795 · Google+1 · Android+1

Soujiaowu

·

Published

2018-02-15

·

Updated

2019-10-03

·

CVE-2017-15340

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Huawei smartphones version TAG-AL00C92B168
Description: The issue allows an attacker to trick a user into installing a crafted application. This application simulates a click action to back up data in a non-encrypted way using an Android assist function. Successful exploitation could result in information disclosure.
Recommendations: For Huawei smartphones version TAG-AL00C92B168, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-15340

Affected Products

Android
Huawei Smartphone