PT-2019-4592 · Huawei · Huawei Pcmanager

Jesse Michael

+1

·

Published

2019-07-10

·

Updated

2020-08-24

·

CVE-2019-5238

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Huawei PC Manager versions prior to 9.0.1.66 (Oversea) Huawei PC Manager versions prior to 9.0.1.70 (China)
Description The issue is related to insufficient access control in the Huawei PC Manager application, allowing an attacker to execute arbitrary code and write arbitrary files. Successful exploitation of this issue may cause the attacker to execute code and read or write information.
Recommendations For versions prior to 9.0.1.66 (Oversea), update to version 9.0.1.66 or later. For versions prior to 9.0.1.70 (China), update to version 9.0.1.70 or later.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-00652
CVE-2019-5238

Affected Products

Huawei Pcmanager