Vulnerability Description
Huawei Honor Smart Scale Application with software of 1.1.1 has an information disclosure vulnerability. The application does not sufficiently restrict the resource which can be accessed by certain protocol. An attacker could trick the user to click a malicious link, successful exploit could cause information disclosure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Honor Smart Scale Application Firmware | 1.1.1 |
| Huawei | Honor Smart Scale Application | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180309-01-ah-enVendor Advisory
- http://www.securityfocus.com/bid/103442Third Party AdvisoryVDB Entry
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180309-01-ah-enVendor Advisory
- http://www.securityfocus.com/bid/103442Third Party AdvisoryVDB Entry
FAQ
What is CVE-2017-17322?
CVE-2017-17322 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Huawei Honor Smart Scale Application with software of 1.1.1 has an information disclosure vulnerability. The application does not sufficiently restrict the resource which can be accessed by certain pr...
How severe is CVE-2017-17322?
CVE-2017-17322 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-17322?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Honor Smart Scale Application Firmware, Huawei Honor Smart Scale Application.