Vulnerability Details CVE-2017-8171
Huawei smart phones with software earlier than Vicky-AL00AC00B172D versions have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker can login the Talkback mode and can perform some operations to bypass the Google account verification. As a result, the FRP function is bypassed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 6.0%
CVSS Severity
CVSS v3 Score 4.6
CVSS v2 Score 4.9
Products affected by CVE-2017-8171
-
cpe:2.3:h:huawei:p10_plus:-
-
cpe:2.3:o:huawei:p10_plus_firmware:-
-
cpe:2.3:o:huawei:p10_plus_firmware:8.0.0.357(c00)
-
cpe:2.3:o:huawei:p10_plus_firmware:9.1.0.201(c01e75r1p12t8)
-
cpe:2.3:o:huawei:p10_plus_firmware:9.1.0.252(c185e2r1p9t8)
-
cpe:2.3:o:huawei:p10_plus_firmware:9.1.0.252(c432e4r1p9t8)
-
cpe:2.3:o:huawei:p10_plus_firmware:9.1.0.255(c576e6r1p8t8)
-
cpe:2.3:o:huawei:p10_plus_firmware:vicky-al00ac00b172