Vulnerability CVE-2018-7907


Published: 2018-09-26

Description:
Some Huawei products Agassi-L09 AGS-L09C100B257CUSTC100D001, AGS-L09C170B253CUSTC170D001, AGS-L09C199B251CUSTC199D001, AGS-L09C229B003CUSTC229D001, Agassi-W09 AGS-W09C100B257CUSTC100D001, AGS-W09C128B252CUSTC128D001, AGS-W09C170B252CUSTC170D001, AGS-W09C229B251CUSTC229D001, AGS-W09C331B003CUSTC331D001, AGS-W09C794B001CUSTC794D001, Baggio2-U01A BG2-U01C100B160CUSTC100D001, BG2-U01C170B160CUSTC170D001, BG2-U01C199B162CUSTC199D001, BG2-U01C209B160CUSTC209D001, BG2-U01C333B160CUSTC333D001, Bond-AL00C Bond-AL00CC00B201, Bond-AL10B Bond-AL10BC00B201, Bond-TL10B Bond-TL10BC01B201, Bond-TL10C Bond-TL10CC01B131, Haydn-L1JB HDN-L1JC137B068, Kobe-L09A KOB-L09C100B252CUSTC100D001, KOB-L09C209B002CUSTC209D001, KOB-L09C362B001CUSTC362D001, Kobe-L09AHN KOB-L09C233B226, Kobe-W09C KOB-W09C128B251CUSTC128D001, LelandP-L22C 8.0.0.101(C675CUSTC675D2), LelandP-L22D 8.0.0.101(C675CUSTC675D2), Rhone-AL00 Rhone-AL00C00B186, Selina-L02 Selina-L02C432B153, Stanford-L09S Stanford-L09SC432B183, Toronto-AL00 Toronto-AL00C00B223, Toronto-AL00A Toronto-AL00AC00B223, Toronto-TL10 Toronto-TL10C01B223 have a sensitive information leak vulnerability. An attacker can trick a user to install a malicious application to exploit this vulnerability. Due to insufficient verification of the input, successful exploitation can cause sensitive information leak.

Type:

CWE-200

(Information Exposure)

Vendor: Huawei
Product: Toronto-tl10 firmware 
Version: toronto-tl10c01b223;
Product: Toronto-al00 firmware 
Version: toronto-al00c00b223;
Product: Toronto-al00a firmware 
Version: toronto-al00ac00b223;
Product: Stanford-l09s firmware 
Version: stanford-l09sc432b183;
Product: Selina-l02 firmware 
Version: selina-l02c432b153;
Product: Rhone-al00 firmware 
Version: rhone-al00c00b186;
Product: Kobe-w09c firmware 
Version: kob-w09c128b251custc128d001;
Product: Kobe-l09a firmware 
Version:
kob-l09c362b001custc362d001
kob-l09c209b002custc209d001
kob-l09c100b252custc100d001
Product: Kobe-l09ahn firmware 
Version: kob-l09c233b226;
Product: Haydn-l1jb firmware 
Version: hdn-l1jc137b068;
Product: Bond-tl10c firmware 
Version: bond-tl10cc01b131;
Product: Bond-tl10b firmware 
Version: bond-tl10bc01b201;
Product: Bond-al10b firmware 
Version: bond-al10bc00b201;
Product: Bond-al00c firmware 
Version: bond-al00cc00b201;
Product: Baggio2-u01a firmware 
Version:
bg2-u01c333b160custc333d001
bg2-u01c209b160custc209d001
bg2-u01c199b162custc199d001
bg2-u01c170b160custc170d001
bg2-u01c100b160custc100d001
Product: Agassi-w09 firmware 
Version:
ags-w09c794b001custc794d001
ags-w09c331b003custc331d001
ags-w09c229b251custc229d001
ags-w09c170b252custc170d001
ags-w09c128b252custc128d001
ags-w09c100b257custc100d001
Product: Agassi-l09 firmware 
Version:
ags-l09c229b003custc229d001
ags-l09c199b251custc199d001
ags-l09c170b253custc170d001
ags-l09c100b257custc100d001
Product: Lelandp-l22d firmware 
Version: 8.0.0.101_c675custc675d2;
Product: Lelandp-l22c firmware 
Version: 8.0.0.101_c675custc675d2;

CVSS2 => (AV:N/AC:M/Au:N/C:P/I:N/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
4.3/10
2.9/10
8.6/10
Exploit range
Attack complexity
Authentication
Remote
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
None

 References:
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180919-02-smartphone-en

Related CVE
CVE-2018-7900
There is an information leak vulnerability in some Huawei HG products. An attacker may obtain information about the HG device by exploiting this vulnerability.
CVE-2018-7956
Huawei VIP App is a mobile app for Malaysia customers that purchased P20 Series, Nova 3/3i and Mate 20. There is a vulnerability in versions before 4.0.5 that attackers can conduct bruteforce to the VIP App Web Services to get user information.
CVE-2018-7977
There is an information leakage vulnerability on several Huawei products. Due to insufficient communication protection for specific services, a remote, unauthorized attacker can exploit this vulnerability to connect to specific services to obtain add...
CVE-2018-7961
There is a smart SMS verification code vulnerability in some Huawei smart phones. An attacker should trick a user to access malicious Website or malicious App and register. Due to incorrect processing of the smart SMS verification code, successful ex...
CVE-2018-7960
There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept the packets in non-secure transmission mode. Successful exploitation may intercept and tamper with...
CVE-2018-7959
There is a short key vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to intercept and decrypt the call information when the user enables SRTP to make a call. Successful exploitation may ca...
CVE-2018-7958
There is an anonymous TLS cipher suites supported vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-middle attack to hijack the connection from a client when the user signs up to log in by TLS. Due to ins...
CVE-2018-7926
Huawei Watch 2 with versions and earlier than OWDD.180707.001.E1 have an improper authorization vulnerability. Due to improper permission configuration for specific operations, an attacker who obtained the Huawei ID bound to the watch can bypass perm...

Copyright 2019, cxsecurity.com

 

Back to Top