Lucene search

K
cvelistHuaweiCVELIST:CVE-2018-7926
HistoryNov 13, 2018 - 7:00 p.m.

CVE-2018-7926

2018-11-1319:00:00
huawei
www.cve.org

4.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.0%

Huawei Watch 2 with versions and earlier than OWDD.180707.001.E1 have an improper authorization vulnerability. Due to improper permission configuration for specific operations, an attacker who obtained the Huawei ID bound to the watch can bypass permission verification to perform specific operations and modify some data on the watch.

CNA Affected

[
  {
    "product": "Huawei Watch 2",
    "vendor": "Huawei Technologies Co., Ltd.",
    "versions": [
      {
        "status": "affected",
        "version": "Versions and earlier than OWDD.180707.001.E1"
      }
    ]
  }
]

4.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.0%

Related for CVELIST:CVE-2018-7926