CVE-2017-2723
Last modified
CVE-2017-2723 is a vulnerability of currently unknown severity. The Files APP 7.1.1.308 and earlier versions in some Huawei mobile phones has a vulnerability of plaintext storage of users' Safe passwords. An attacker with the root privilege of an Android system could forge the Safe to read users' plaintext Safe passwords, leading to information leak.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
The Files APP 7.1.1.308 and earlier versions in some Huawei mobile phones has a vulnerability of plaintext storage of users' Safe passwords. An attacker with the root privilege of an Android system could forge the Safe to read users' plaintext Safe passwords, leading to information leak.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Files | <= 7.1.1.308 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-2723?
How severe is CVE-2017-2723?
How do I fix CVE-2017-2723?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-2717honor 8 Pro with software Duke-L09C10B120 and earlier versio…
- CVE-2017-2718FusionSphere OpenStack with software V100R006C00 and V100R00…8.8
- CVE-2017-2719FusionSphere OpenStack with software V100R006C00 and V100R00…
- CVE-2017-2720FusionSphere OpenStack V100R006C00 has an information exposu…
- CVE-2017-2721Some Huawei smart phones with software Berlin-L21C10B130,Ber…
- CVE-2017-2722DP300 V500R002C00,TE60 with software V100R001C01, V100R001C1…
- CVE-2017-2724Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2725Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2726Bastet in P10 Plus and P10 smart phones with software earlie…
- CVE-2017-2727Huawei P9 smart phones with software versions earlier before…
- CVE-2017-2728Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and ea…
- CVE-2017-2729The boot loaders in Honor 5A smart phones with software Vers…
Are you affected by CVE-2017-2723?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
