4.6
CVSSv3

CVE-2019-19412

Published: 08/06/2020 Updated: 08/07/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.6 | Impact Score: 3.6 | Exploitability Score: 0.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Huawei smart phones have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker login the Talkback mode and can perform some operations to install a third-Party application. Affected products can be found in www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-frp-en.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei alp-al00b_firmware

huawei alp-l09_firmware

huawei alp-l29_firmware

huawei anne-al00_firmware

huawei bla-al00b_firmware

huawei bla-l09c_firmware

huawei bla-l29c_firmware

huawei berkeley-al20_firmware

huawei berkeley-l09_firmware

huawei emily-l29c_firmware

huawei figo-l03_firmware

huawei figo-l21_firmware

huawei figo-l23_firmware

huawei figo-l31_firmware

huawei florida-l03_firmware

huawei florida-l21_firmware

huawei florida-l22_firmware

huawei florida-l23_firmware

huawei p_smart_firmware

huawei y7s_firmware

huawei p20_lite_firmware

huawei nova_3e_firmware

huawei honor_view_10_firmware

huawei leland-al00a_firmware

huawei leland-l21a_firmware

huawei leland-l22a_firmware

huawei leland-l22c_firmware

huawei leland-l31a_firmware

Vendor Advisories

There is a Factory Reset Protection (FRP) bypass security vulnerability in some Huawei smart phones When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker login the Talkback mode and can perform some operations to install a third-Party application As a result, the FRP function is bypassed (Vulnerabili ...