CVE-2016-5230
high
CVSS v3
8.8
CVSS v2
6.8
VIR risk
8.8
Description
Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL before NXT-TL00C01B182 allows attackers to bypass permission checks and control partial module functions via a crafted app.
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160520-01-smartphone-en
References
CWEs
CWE-264
Verify integrity in audit chain (admin only). AS-IS.