CVE-2017-2728

Published: Nov 22, 2017 Last Modified: Apr 20, 2025 EU-VD ID: EUVD-2017-11871 Aliases: GSD-2017-2728
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 6,4
Attack Vector: physical
Attack Complexity: high
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
MEDIUM 6,9
Access Vector: local
Access Complexity: medium
Authentication: none
Confidentiality: complete
Integrity: complete
Availability: complete

Description

AI Translation Available

Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and earlier versions have a Bluetooth unlock bypassing vulnerability. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.uawei mobile phones have a Bluetooth unlock bypassing vulnerability due to the lack of validation on Bluetooth devices. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0003
Percentile
0,1th
Updated

EPSS Score Trend (Last 91 Days)

Operating System

Honor 6X Firmware by Huawei

Version Range Affected
To berlin-l22c636b150 (inclusive)
cpe:2.3:o:huawei:honor_6x_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20170323-01-s…
http://www.securityfocus.com/bid/97042
Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/97042
http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20170323-01-s…
http://www.securityfocus.com/bid/97042
Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/97042