Exposure in System Interface on TIT-AL00 Smartphones by Huawei
CVE-2017-2735
7.1HIGH
Summary
The TIT-AL00 smartphones from Huawei exhibit a vulnerability in their system interface, which allows unrestrained access to external applications. Users may inadvertently install malicious software that calls this exposed interface, enabling attackers to alter system properties without proper authorization. The vulnerability affects software versions prior to TIT-AL00C583B214, underscoring the importance of updating to secure versions to mitigate potential exploits.
Affected Version(s)
TIT-AL00 Versions earlier before TIT-AL00C583B214
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved