Vulnerability Intelligence Report
CVE-2018-7944
Huawei smart phones Emily-AL00A with software 8.1.0.106(SP2C00) and 8.1.0.107(SP5C00) have a Factory Reset Protection (FRP) bypass vulnerability. An attacker gets some user's smart phone and performs some special operations in the guide function. The attacker may exploit the vulnerability to bypass FRP function and use the phone normally.
No Active Exploit Signals
CVSS Base Score
6.8
MEDIUM
EPSS Probability:0.30%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Huawei Technologies Co., Ltd. | Emily-AL00A | 8.1.0.106(SP2C00) and 8.1.0.107(SP5C00) (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
0.304%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Huawei Technologies · Vendor · China |
| Reserved | 2018-03-09T00:00:00 |
| Published | 2018-07-05T18:00:00 |
| Patch Date | 2018-06-22 |
| Last Updated | 2024-08-05T06:37:59 |
Community Chatter & Buzz