CVE-2019-5263

CWE-3073 documents3 sources
Severity
5.5MEDIUM
EPSS
0.1%
top 82.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 29
Latest updateMay 24

Description

HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions before 9.1.1.308 have a brute forcing encrypted backup data vulnerability. Huawei smartphone user backup information can be obtained by brute forcing the password for encrypting the backup.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

NVDhuawei/hwbackup9.1.1.308
NVDhuawei/hisuite9.1.0.305

🔴Vulnerability Details

2
GHSA
GHSA-5m27-xjxh-cpq9: HiSuite with 92022-05-24
CVEList
CVE-2019-5263: HiSuite with 92019-11-29
CVE-2019-5263 (MEDIUM CVSS 5.5) | HiSuite with 9.1.0.305 and earlier | cvebase.io