Huawei Y6 Pro Firmware vulnerabilities

3 known vulnerabilities affecting huawei/y6_pro_firmware.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1LOW1

Vulnerabilities

Page 1 of 1
CVE-2019-5252LOWCVSS 3.5fixed in 9.1.0.248\(c636e5r3p1\)2019-12-14
CVE-2019-5252 [LOW] CWE-287 CVE-2019-5252: There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, Honor 9i, Y6 Pro). The applock does not perform a sufficient authentication in a rare condition. Successful exploit could allow the attacker to use the application locked by applock in an instant.
nvd
CVE-2017-17140MEDIUMCVSS 5.5fixed in tit-l01c576b1212018-03-05
CVE-2017-17140 [MEDIUM] CWE-200 CVE-2017-17140: Huawei Enjoy 5s and Y6 Pro smartphones with software the versions before TAG-AL00C92B170; the versio Huawei Enjoy 5s and Y6 Pro smartphones with software the versions before TAG-AL00C92B170; the versions before TIT-L01C576B121 have an information leak vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious application on the smart phone and the application can read some sensitive information in k
nvd
CVE-2017-2735HIGHCVSS 7.1fixed in tit-al00c583b2142017-11-22
CVE-2017-2735 [HIGH] CWE-749 CVE-2017-2735: TIT-AL00 smartphones with software versions earlier before TIT-AL00C583B214 have a exposed system in TIT-AL00 smartphones with software versions earlier before TIT-AL00C583B214 have a exposed system interface vulnerability. The software provides a system interface for interaction with external applications, but calling the interface is not properly restricted. An attacker could trick the user into installing a malicious application to call the interfac
nvd