CVE-2017-2730 is an information leak vulnerability affecting HUAWEI HiLink APP (for iOS) versions prior to 5.0.25.306 and HUAWEI Tech Support APP (for iOS) versions prior to 5.0.0. An attacker can exploit this by setting up a malicious Wi-Fi hotspot, allowing them to collect the iPhone model and firmware version of connecting devices. This vulnerability has a low CVSS score of 3.5, indicating a low severity with an adjacent attack vector and low impact on confidentiality. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 5.0.25.306CPE matchmatch criteria | cpe:2.3:a:huawei:hilink:*:*:*:*:*:*:*:* | ||
< 5.0.0CPE matchmatch criteria | cpe:2.3:a:huawei:tech_support:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.