2.4
CVSSv3

CVE-2019-5213

Published: 12/11/2019 Updated: 15/11/2019
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 2.4 | Impact Score: 1.4 | Exploitability Score: 0.9
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Honor play smartphones with versions earlier than Cornell-AL00A 9.1.0.321(C00E320R1P1T8) have an insufficient authentication vulnerability. The system has a logic judge error under certain scenario. Successful exploit could allow the malicious user to modify the alarm clock settings after a serious of uncommon operations without unlock the screen lock.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei honor play firmware

Vendor Advisories

There is an insufficient authentication vulnerability on several smartphones The system has a logic judge error under certain scenario Successful exploit could allow the attacker to modify the alarm clock settings after a serious of uncommon operations without unlock the screen lock (Vulnerability ID: HWPSIRT-2019-03114) This vulnerability has b ...