cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2018-7992,https://securityvulnerability.io/vulnerability/CVE-2018-7992,,"Mdapt Driver of Huawei MediaPad M3 BTV-W09C128B353CUSTC128D001; Mate 9 Pro versions earlier than 8.0.0.356(C00); P10 Plus versions earlier than 8.0.0.357(C00) has a buffer overflow vulnerability. The driver does not sufficiently validate the input, an attacker could trick the user to install a malicious application which would send crafted parameters to the driver. Successful exploit could cause a denial of service condition.",McAfee,Mediapad M3; Mate 9 Pro; P10 Plus,5.5,MEDIUM,0.0005600000149570405,false,,false,false,false,,,false,false,,2018-07-31T14:00:00.000Z,0 CVE-2017-2725,https://securityvulnerability.io/vulnerability/CVE-2017-2725,,"Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.",McAfee,"P10 Plus,p10",7.8,HIGH,0.0014700000174343586,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-2726,https://securityvulnerability.io/vulnerability/CVE-2017-2726,,"Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.",McAfee,"P10 Plus,p10",8.4,HIGH,0.0010100000072270632,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8141,https://securityvulnerability.io/vulnerability/CVE-2017-8141,,"The Touch Panel (TP) driver in P10 Plus smart phones with software versions earlier than VKY-AL00C00B153 has a memory double free vulnerability. An attacker with the root privilege of the Android system tricks a user into installing a malicious application, and the application can start multiple threads and try to free specific memory, which could triggers double free and causes a system crash or arbitrary code execution.",McAfee,P10 Plus,7.8,HIGH,0.0007999999797903001,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8144,https://securityvulnerability.io/vulnerability/CVE-2017-8144,,"Honor 5A,Honor 8 Lite,Mate9,Mate9 Pro,P10,P10 Plus Huawei smartphones with software the versions before CAM-L03C605B143CUSTC605D003,the versions before Prague-L03C605B161,the versions before Prague-L23C605B160,the versions before MHA-AL00C00B225,the versions before LON-AL00C00B225,the versions before VTR-AL00C00B167,the versions before VTR-TL00C01B167,the versions before VKY-AL00C00B167,the versions before VKY-TL00C01B167 have a resource exhaustion vulnerability due to configure setting. An attacker tricks a user into installing a malicious application, the application may turn on the device flash-light and rapidly drain the device battery.",McAfee,"Honor 5a,honor 8 Lite,mate9,mate9 Pro,p10,p10 Plus",5.5,MEDIUM,0.0006300000241026282,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8150,https://securityvulnerability.io/vulnerability/CVE-2017-8150,,"The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria-L09AC605B162, the versions before Victoria-L29AC605B162, the versions before Vicky-L29AC605B162 have an arbitrary memory write vulnerability due to the lack of parameter validation. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause arbitrary memory writing in the next system reboot, causing continuous system reboot or arbitrary code execution.",McAfee,"P10, P10 Plus",7.8,HIGH,0.0008800000068731606,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8172,https://securityvulnerability.io/vulnerability/CVE-2017-8172,,"Isub service in P10 Plus and P10 smart phones with earlier than VKY-AL00C00B157 versions and earlier than VTR-AL00C00B157 versions has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application on the smart phone, and the application can send given parameter to specific interface, which make a out-of-bounds array access that results in smart phone restart.",McAfee,"P10 Plus,p10",5.5,MEDIUM,0.0007999999797903001,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8215,https://securityvulnerability.io/vulnerability/CVE-2017-8215,,"Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have a permission control vulnerability. An attacker with the system privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader.",McAfee,"Honor 8,honor V8,honor 9,honor V9,nova 2,nova 2 Plus,p9,p10 Plus,toronto",6.2,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8214,https://securityvulnerability.io/vulnerability/CVE-2017-8214,,"Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have an unlock code verification bypassing vulnerability. An attacker with the root privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader.",McAfee,"Honor 8,honor V8,honor 9,honor V9,nova 2,nova 2 Plus,p9,p10 Plus,toronto",6.2,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-8146,https://securityvulnerability.io/vulnerability/CVE-2017-8146,,"The call module of P10 and P10 Plus smartphones with software versions before VTR-AL00C00B167, versions before VTR-TL00C01B167, versions before VKY-AL00C00B167, versions before VKY-TL00C01B167 has a DoS vulnerability. An attacker may trick a user into installing a malicious application, and the application can send given parameter to call module to crash the call and data communication process.",McAfee,"P10, P10 Plus",5.5,MEDIUM,0.0006300000241026282,false,,false,false,false,,,false,false,,2017-11-22T19:29:00.000Z,0 CVE-2017-2724,https://securityvulnerability.io/vulnerability/CVE-2017-2724,,"Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.",McAfee,"P10 Plus,p10",8.4,HIGH,0.0010100000072270632,false,,false,false,false,,,false,false,,2017-11-15T00:00:00.000Z,0 CVE-2017-8149,https://securityvulnerability.io/vulnerability/CVE-2017-8149,,"The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria-L09AC605B162, the versions before Victoria-L29AC605B162, the versions before Vicky-L29AC605B162 have an out-of-bounds memory access vulnerability due to the lack of parameter validation. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. the APP can modify specific data to cause buffer overflow in the next system reboot, causing out-of-bounds memory read which can continuous system reboot.",McAfee,"P10, P10 Plus",5.5,MEDIUM,0.0006900000153109431,false,,false,false,false,,,false,false,,2017-11-15T00:00:00.000Z,0 CVE-2017-8145,https://securityvulnerability.io/vulnerability/CVE-2017-8145,,"The call module of P10 and P10 Plus smartphones with software versions before VTR-AL00C00B167, versions before VTR-TL00C01B167, versions before VKY-AL00C00B167, versions before VKY-TL00C01B167 has a DoS vulnerability. An attacker may trick a user into installing a malicious application, and the application can send given parameter to call module to crash the call and data communication process.",McAfee,"P10, P10 Plus",5.5,MEDIUM,0.0006300000241026282,false,,false,false,false,,,false,false,,2017-11-15T00:00:00.000Z,0