Vulnerability Details CVE-2019-5230
P20 Pro, P20, Mate RS smartphones with versions earlier than Charlotte-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than Emily-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than NEO-AL00D NEO-AL00 9.1.0.321(C786E320R1P1T8) have an improper validation vulnerability. The system does not perform a properly validation of certain input models, an attacker could trick the user to install a malicious application then craft a malformed model, successful exploit could allow the attacker to get and tamper certain output data information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.2%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 4.3
Products affected by CVE-2019-5230
-
cpe:2.3:h:huawei:mate_rs:-
-
-
cpe:2.3:h:huawei:p20_pro:-
-
cpe:2.3:o:huawei:mate_rs_firmware:-
-
cpe:2.3:o:huawei:mate_rs_firmware:9.1.0.321(c786e320r1p1t8)
-
cpe:2.3:o:huawei:mate_rs_firmware:neo-al00d_8.1.0.167(c786)
-
cpe:2.3:o:huawei:p20_firmware:-
-
cpe:2.3:o:huawei:p20_firmware:10.0.0.156(c00e156r1p4)
-
cpe:2.3:o:huawei:p20_firmware:10.0.0.162(c00e156r1p4)
-
cpe:2.3:o:huawei:p20_firmware:8.0.1.16(c00)
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.109
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.120
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.121
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.128
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.130
-
cpe:2.3:o:huawei:p20_firmware:8.1.0.171(c00)
-
cpe:2.3:o:huawei:p20_firmware:9.1.0.312(c00e312r1p1t8)
-
cpe:2.3:o:huawei:p20_firmware:9.1.0.333(c00e333r1p1t8)
-
cpe:2.3:o:huawei:p20_firmware:emily-al00a_9.0.0.167(c00e81r1p21t8)
-
cpe:2.3:o:huawei:p20_pro_firmware:-
-
cpe:2.3:o:huawei:p20_pro_firmware:10.0.0.162(c00e156r1p4)
-
cpe:2.3:o:huawei:p20_pro_firmware:8.1.0.152(c00)
-
cpe:2.3:o:huawei:p20_pro_firmware:9.1.0.333(c00e333r1p1t8)