CVE-2019-5263
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/11/2019
Last modified:
24/08/2020
Description
HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions before 9.1.1.308 have a brute forcing encrypted backup data vulnerability. Huawei smartphone user backup information can be obtained by brute forcing the password for encrypting the backup.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:huawei:hisuite:*:*:*:*:*:macos:*:* | 9.1.0.305 (including) | |
| cpe:2.3:a:huawei:hisuite:*:*:*:*:*:windows:*:* | 9.1.0.305 (including) | |
| cpe:2.3:a:huawei:hwbackup:*:*:*:*:*:*:*:* | 9.1.1.308 (including) |
To consult the complete list of CPE names with products and versions, see this page



