CVE-2019-5292
Last modified
CVE-2019-5292 is a low-severity vulnerability rated 3.3/10 on the CVSS scale. Honor 10 Lite, Honor 8A, Huawei Y6 mobile phones with the versions before 9.1.0.217(C00E215R3P1), the versions before 9.1.0.205(C00E97R1P9), the versions before 9.1.0.205(C00E97R2P2) have an information leak vulnerability. Due to improper function error records of some module, an attacker with the access permission may exploit the vulnerability to obtain some information.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
Honor 10 Lite, Honor 8A, Huawei Y6 mobile phones with the versions before 9.1.0.217(C00E215R3P1), the versions before 9.1.0.205(C00E97R1P9), the versions before 9.1.0.205(C00E97R2P2) have an information leak vulnerability. Due to improper function error records of some module, an attacker with the access permission may exploit the vulnerability to obtain some information.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Honor 10 Lite Firmware | < 9.1.0.217\(c00e215r3p1\) |
| Huawei | Honor 8a Firmware | < 9.1.0.205\(c00e97r1p9\) |
| Huawei | Huawei Y6 Firmware | < 9.1.0.205\(c00e97r2p2\) |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-5292?
How severe is CVE-2019-5292?
How do I fix CVE-2019-5292?
Are you affected by CVE-2019-5292?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
