7.5
CVSSv3

CVE-2017-2704

Published: 22/11/2017 Updated: 02/04/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Smarthome 1.0.2.364 and previous versions versions,HiAPP 7.3.0.303 and previous versions versions,HwParentControl 2.0.0 and previous versions versions,HwParentControlParent 5.1.0.12 and previous versions versions,Crowdtest 1.5.3 and previous versions versions,HiWallet 8.0.0.301 and previous versions versions,Huawei Pay 8.0.0.300 and previous versions versions,Skytone 8.1.2.300 and previous versions versions,HwCloudDrive(EMUI6.0) 8.0.0.307 and previous versions versions,HwPhoneFinder(EMUI6.0) 9.3.0.310 and previous versions versions,HwPhoneFinder(EMUI5.1) 9.2.2.303 and previous versions versions,HiCinema 8.0.2.300 and previous versions versions,HuaweiWear 21.0.0.360 and previous versions versions,HiHealthApp 3.0.3.300 and previous versions versions have an information exposure vulnerability. Encryption keys are stored in the system. The attacker can implement reverse engineering to obtain the encryption keys, causing information exposure.

Vulnerable Product Search on Vulmon Subscribe to Product

huawei smarthome

huawei hiapp

huawei hwparentcontrol

huawei hwparentcontrolparent

huawei crowdtest

huawei hiwallet

huawei huawei pay

huawei skytone

huawei hwclouddrive\\(emui6.0\\)

huawei hwphonefinder\\(emui6.0\\)

huawei hwphonefinder\\(emui5.1\\)

huawei hicinema

huawei huaweiwear

huawei hihealthapp