Back to search
CVE-2017-8153
Published: Nov 22, 2017
Modified: Sep 17, 2024
PUBLISHED
Description
Huawei VMall (for Android) with the versions before 1.5.8.5 have a privilege elevation vulnerability due to improper design. An attacker can trick users into installing a malicious app which can send out HTTP requests and execute JavaScript code in web pages without obtaining the Internet access permission. Successful exploit could lead to resource occupation or information leak.
| Vendor | Product | Versions |
|---|---|---|
Huawei Technologies Co., Ltd. | VMall (for Android) | affected The versions before VMall 1.5.8.5 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now