Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2019-5251

There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames from the application. An attacker could trick the user into installing, backing up and restoring a malicious application. Successful exploit could cause information disclosure.

  • Published: Dec 13, 2019
  • Updated: Apr 13, 2023
  • CVE: CVE-2019-5251
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:P/I:N/A:N
Software From Fixed in
huawei / honor_v10_firmware - 9.1.0.333\(c00e333r2p1t8\)
huawei / p30_firmware - 9.1.0.226\(c00e220r2p1\)
huawei / enjoy_7s_firmware - 9.1.0.130\(c00e115r2p8t8\)
huawei / mate_20_firmware - 9.1.0.139\(c00e133r3p1\)
huawei / honor_9_lite_firmware - 9.1.0.143\(c636e5r1p5t8\)
huawei / honor_9i_firmware - 9.1.0.120\(c00e113r1p6t8\)
huawei / m6_firmware - 9.1.1.150\(c00e150r1p150\)
huawei / p30_pro_firmware - 9.1.0.226\(c00e210r2p1\)
huawei / honor_20s_firmware - 9.1.1.132\(c00e131r6p1\)
huawei / honor_9_lite_firmware - 9.1.0.130\(c00e112r2p10t8\)