There is an insufficient authentication vulnerability in Huawei Band 2 and Honor Band 3. The band does not sufficiently authenticate the device try to connect to it in certain scenario. Successful exploit could allow the attacker to spoof then connect to the band.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191106-01-band-en | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: huawei
Published: 2019-11-29T19:51:01
Updated: 2019-11-29T19:51:01
Reserved: 2019-01-04T00:00:00
Link: CVE-2019-5218
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-11-29T20:15:11.020
Modified: 2019-12-16T18:59:47.867
Link: CVE-2019-5218
JSON object: View
Redhat Information
No data.
CWE