CVE-2017-2733 is an information leak vulnerability affecting Honor 6X smartphones running specific older software versions (BLN-AL10C00B357 and BLN-AL20C00B357). The flaw stems from improper file permission configuration, allowing a malicious application to access the encrypted SIM card PIN. This vulnerability has a CVSS score of 5.5 (Medium), indicating a low attack complexity where user interaction (installing a malicious app) is required, but it could lead to high confidentiality impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< bln-al10c00b357CPE matchmatch criteria | cpe:2.3:o:huawei:honor_6x_firmware:*:*:*:*:*:*:*:* | ||
< bln-al20c00b357CPE matchmatch criteria | cpe:2.3:o:huawei:honor_6x_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.