Exposure in System Interface on TIT-AL00 Smartphones by Huawei
CVE-2017-2735

7.1HIGH

Key Information:

Vendor
McAfee
Status
Vendor
CVE Published:
22 November 2017

Summary

The TIT-AL00 smartphones from Huawei exhibit a vulnerability in their system interface, which allows unrestrained access to external applications. Users may inadvertently install malicious software that calls this exposed interface, enabling attackers to alter system properties without proper authorization. The vulnerability affects software versions prior to TIT-AL00C583B214, underscoring the importance of updating to secure versions to mitigate potential exploits.

Affected Version(s)

TIT-AL00 Versions earlier before TIT-AL00C583B214

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.