CVE-2019-5263

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/11/2019
Last modified:
24/08/2020

Description

HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions before 9.1.1.308 have a brute forcing encrypted backup data vulnerability. Huawei smartphone user backup information can be obtained by brute forcing the password for encrypting the backup.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:huawei:hisuite:*:*:*:*:*:macos:*:* 9.1.0.305 (including)
cpe:2.3:a:huawei:hisuite:*:*:*:*:*:windows:*:* 9.1.0.305 (including)
cpe:2.3:a:huawei:hwbackup:*:*:*:*:*:*:*:* 9.1.1.308 (including)