CVE-2019-5309Improper Restriction of Excessive Authentication Attempts in Huawei Honor Play Firmware

Severity
4.6MEDIUMNVD
EPSS
0.1%
top 81.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 29
Latest updateMay 24

Description

Honor play smartphones with versions earlier than 9.1.0.333(C00E333R1P1T8) have an information disclosure vulnerability in certain Huawei . An attacker could view certain information after a series of operation without unlock the screen lock. Successful exploit could cause an information disclosure condition.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 0.9 | Impact: 3.6

Affected Packages2 packages

NVDhuawei/honor_play_firmware< 9.1.0.333\(c00e333r1p1t8\)
CVEListV5huawei/honor_play_firmwareVersions earlier than 9.1.0.333(C00E333R1P1T8)

🔴Vulnerability Details

2
GHSA
GHSA-3467-vmmf-hrxw: Honor play smartphones with versions earlier than 92022-05-24
CVEList
CVE-2019-5309: Honor play smartphones with versions earlier than 92019-11-29
CVE-2019-5309 — Huawei vulnerability | cvebase