Vulnerability Details CVE-2021-40055
There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.7%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 7.1
Products affected by CVE-2021-40055
-
cpe:2.3:o:huawei:emui:10.0.0
-
cpe:2.3:o:huawei:emui:10.1.0
-
cpe:2.3:o:huawei:emui:10.1.1
-
cpe:2.3:o:huawei:emui:11.0.0
-
cpe:2.3:o:huawei:emui:11.0.1
-
cpe:2.3:o:huawei:emui:12.0.0
-
cpe:2.3:o:huawei:harmonyos:2.0
-
cpe:2.3:o:huawei:magic_ui:3.0.0
-
cpe:2.3:o:huawei:magic_ui:3.1.0
-
cpe:2.3:o:huawei:magic_ui:3.1.1
-
cpe:2.3:o:huawei:magic_ui:4.0.0