CVE-2017-2705 describes a phone activation bypass vulnerability affecting specific Huawei P9 smartphone software versions. An unauthenticated attacker with physical access could exploit this to bypass the phone activation process and access the device's settings. This vulnerability is rated as LOW severity (CVSS 2.4) due to requiring physical access and only leading to a limited impact of accessing settings, not full device compromise. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< eva-al00c00b365CPE matchmatch criteria | cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:* | ||
< eva-al10c00b365CPE matchmatch criteria | cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:* | ||
< eva-cl00c92b365CPE matchmatch criteria | cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:* | ||
< eva-dl00c17b365CPE matchmatch criteria | cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:* | ||
< eva-tl00c01b365CPE matchmatch criteria | cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.