cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2019-5309,https://securityvulnerability.io/vulnerability/CVE-2019-5309,,Honor play smartphones with versions earlier than 9.1.0.333(C00E333R1P1T8) have an information disclosure vulnerability in certain Huawei . An attacker could view certain information after a series of operation without unlock the screen lock. Successful exploit could cause an information disclosure condition.,Huawei,Honor Play,4.6,MEDIUM,0.000699999975040555,false,,false,false,false,,,false,false,,2019-11-29T20:21:44.000Z,0 CVE-2019-5213,https://securityvulnerability.io/vulnerability/CVE-2019-5213,,Honor play smartphones with versions earlier than Cornell-AL00A 9.1.0.321(C00E320R1P1T8) have an insufficient authentication vulnerability. The system has a logic judge error under certain scenario. Successful exploit could allow the attacker to modify the alarm clock settings after a serious of uncommon operations without unlock the screen lock.,Huawei,Honor Play,2.4,LOW,0.0005499999970197678,false,,false,false,false,,,false,false,,2019-11-12T22:47:47.000Z,0 CVE-2019-5216,https://securityvulnerability.io/vulnerability/CVE-2019-5216,,"There is a race condition vulnerability on Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.156(C00E156R2P14T8), Honor 10 smartphones versions earlier than Columbia-AL10B 9.0.0.156(C00E156R1P20T8) and Honor Play smartphones versions earlier than Cornell-AL00A 9.0.0.156(C00E156R1P13T8). An attacker tricks the user into installing a malicious application, which makes multiple processes to operate the same variate at the same time. Successful exploit could cause execution of malicious code.",Huawei,"Honor V10, Honor 10, Honor Play",7,HIGH,0.0007200000109151006,false,,false,false,false,,,false,false,,2019-06-06T14:31:50.000Z,0 CVE-2017-17145,https://securityvulnerability.io/vulnerability/CVE-2017-17145,,"Huawei Honor V9 Play smart phones with the versions before Jimmy-AL00AC00B135 have an authentication bypass vulnerability due to the improper design of a component. An attacker who get a user's smart phone can execute specific operation, and delete the fingerprint of the phone without authentication.",Huawei,Honor V9 Play Firmware,4.6,MEDIUM,0.0006799999973736703,false,,false,false,false,,,false,false,,2018-03-09T17:00:00.000Z,0