Vulnerability Description
There is an information leak vulnerability in Huawei smart speaker Myna. When the smart speaker is paired with the cloud through Wi-Fi, the speaker incorrectly processes some data. Attackers can exploit this vulnerability to read and modify specific configurations of speakers through a series of operations.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Myna Firmware | 9.0.1.9\(h100sp6c00\) |
| Huawei | Myna | - |
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191127-01-myna-eVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191127-01-myna-eVendor Advisory
FAQ
What is CVE-2019-5271?
CVE-2019-5271 is a vulnerability with a CVSS score of 5.4 (MEDIUM). There is an information leak vulnerability in Huawei smart speaker Myna. When the smart speaker is paired with the cloud through Wi-Fi, the speaker incorrectly processes some data. Attackers can explo...
How severe is CVE-2019-5271?
CVE-2019-5271 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-5271?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Myna Firmware, Huawei Myna.