CVE-2014-8571

LOW

Huawei Ascend P6 Firmware < V100R001C17B508SP02 - Unprotected User Data Exposure via Screenshot Capture

Title source: llm
STIX 2.1

Description

Apps on Huawei Ascend P6 mobile phones with software EDGE-U00 V100R001C17B508SP01 and earlier versions before V100R001C17B508SP02; EDGE-T00 V100R001C01B508SP01 and earlier versions before V100R001C01B508SP02; EDGE-C00 V100R001C92B508SP02 and earlier versions before V100R001C92B508SP03 can capture screens without the root permission. As a result, user information can be leaked by malware on Ascend P6 mobile phones.

References (1)

Core 1
Core References

Scores

CVSS v3 3.3
EPSS 0.0009
EPSS Percentile 25.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Details

CWE
CWE-264
Status published
Products (4)
huawei/ascend_p6_edge-c00_firmware < v100r001c92b508sp02
huawei/ascend_p6_edge-t00_firmware < v100r001c01b508sp01
huawei/ascend_p6_edge-u00_firmware < v100r001c17b508sp01
n/a/EDGE-U00,EDGE-T00,EDGE-C00 EDGE-U00 V100R001C17B508SP01 and earlier versions,V100R001C17B508SP02,EDGE-T00 V100R001C01B508SP01 and earlier versions,V100R001C01B508SP02,EDGE-C00 V100R001C92B508SP02 and EDGE-U00,EDGE-T00,EDGE-C00 EDGE-U00 V100R001C17B508SP01 and earlier versions,V100R001C17B508SP02,EDG
Published Apr 02, 2017
Tracked Since Feb 18, 2026