cbcvebase.
CVE-2017-8171
published 2017-11-22

CVE-2017-8171: Huawei smart phones with software earlier than Vicky-AL00AC00B172D versions have a Factory Reset Protection (FRP) bypass security vulnerability. When…

medium4.6CVSS 3.0
AVPACLPRNUINSUCNIHAN
Huawei smart phones with software earlier than Vicky-AL00AC00B172D versions have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker can login the Talkback mode and can perform some operations to bypass the Google account verification. As a result, the FRP function is bypassed.

Affected

2 ranges
VendorProductVersion rangeFixed in
huaweip10_plus_firmware< vicky-al00ac00b172dvicky-al00ac00b172d
huawei_technologies_co_ltdvicky-al00a