Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-17113 Huawei Honor 5S smart phones with software the versions before TAG-TL00C01B173 have an authentication bypass vulnerability due to the improper design of some components. An attacker can get a user's smart phone and install malicious apps in the mobile phone, allowing the attacker to reset the password and fingerprint of the phone without authentication.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-09-16T20:57:56.269Z

Reserved: 2017-04-25T00:00:00

Link: CVE-2017-8151

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-11-22T19:29:03.380

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-8151

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.