CVE-2018-7930 describes an information leak vulnerability in the Near Field Communication (NFC) module of Huawei Mate 9 mobile phones running firmware versions prior to MHA-L29B 8.0.0.366(C567). This flaw, stemming from insufficient validation of data transfer requests, allows an attacker to obtain arbitrary files from a vulnerable device when files are sent via NFC. Rated Medium severity with a CVSS score of 5.7, the vulnerability requires adjacent access and user interaction (UI:R) but has a high confidentiality impact (C:H). There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< mha-l29b_8.0.0.366\(c567\)CPE matchmatch criteria | cpe:2.3:o:huawei:mate_9_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.