CVE-2019-5229
Last modified
CVE-2019-5229 is a medium-severity vulnerability rated 6.2/10 on the CVSS scale. P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an insufficient verification vulnerability. The system does not verify certain parameters sufficiently, an attacker should connect to the phone and gain high privilege to launch the attack, successful exploit could cause malicious code execution.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an insufficient verification vulnerability. The system does not verify certain parameters sufficiently, an attacker should connect to the phone and gain high privilege to launch the attack, successful exploit could cause malicious code execution.
Metrics
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | P30 Firmware | < elle-al00b_9.1.0.193\(c00e190r2p1\) |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-5229?
How severe is CVE-2019-5229?
How do I fix CVE-2019-5229?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-5223PCManager 9.1.3.1 has an improper authentication vulnerabili…
- CVE-2019-5224P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.…5.5
- CVE-2019-5225P30, Mate 20, P30 Pro smartphones with software of versions …7.8
- CVE-2019-5226P30, P30 Pro, Mate 20 smartphones with software of versions …5.5
- CVE-2019-5227P30, P30 Pro, Mate 20 smartphones with software of versions …5.5
- CVE-2019-5228Certain detection module of P30, P30 Pro, Honor V20 smartpho…7.8
- CVE-2019-5230P20 Pro, P20, Mate RS smartphones with versions earlier than…5.5
- CVE-2019-5231P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.…4.6
- CVE-2019-5232There is a use of insufficiently random values vulnerability…7.5
- CVE-2019-5233Huawei smartphones with versions earlier than Taurus-AL00B 1…8.8
- CVE-2019-5235Some Huawei smart phones have a null pointer dereference vul…5.3
- CVE-2019-5236Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C…
Are you affected by CVE-2019-5229?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
