CVE-2019-5231 - CERT CVE
ID CVE-2019-5231
Sažetak P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability. The software incorrectly performs an authorization check when a user attempts to perform certain action. Successful exploit could allow the attacker to update a crafted package.
Reference
CVSS
Base: 2.1
Impact: 2.9
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:L/AC:L/Au:N/C:N/I:P/A:N
Zadnje važnije ažuriranje 15-11-2019 - 04:26
Objavljeno 13-11-2019 - 00:15