CVE-2017-2703

MEDIUM

Phone Finder <MHA-AL00BC00B156 - Auth Bypass

Title source: llm
STIX 2.1

Description

Phone Finder in versions earlier before MHA-AL00BC00B156,Versions earlier before MHA-CL00BC00B156,Versions earlier before MHA-DL00BC00B156,Versions earlier before MHA-TL00BC00B156,Versions earlier before EVA-AL10C00B373,Versions earlier before EVA-CL10C00B373,Versions earlier before EVA-DL10C00B373,Versions earlier before EVA-TL10C00B373 can be bypass. An attacker can bypass the Phone Finder by special steps and enter the System Setting.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/95657

Scores

CVSS v3 6.8
EPSS 0.0002
EPSS Percentile 6.2%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (3)
huawei/mate_9_firmware < mha-al00bc00b156
huawei/p9_firmware < eva-al10c00b373
Huawei Technologies Co., Ltd./Mate 9, P9 Versions earlier before MHA-AL00BC00B156,Versions earlier before MHA-CL00BC00B156,Versions earlier b
Published Nov 22, 2017
Tracked Since Feb 18, 2026