CVE Feed

    Dashboard / CVE / CVE-2017-2704

    CVE-2017-2704

    Smarthome 1.0.2.364 and earlier versions,HiAPP 7.3.0.303 and earlier versions,HwParentControl 2.0.0 and earlier versions,HwParentControlParent 5.1.0.12 and earlier versions,Crowdtest 1.5.3 and earlier versions,HiWallet 8.0.0.301 and earlier versions,Huawei Pay 8.0.0.300 and earlier versions,Skytone 8.1.2.300 and earlier versions,HwCloudDrive(EMUI6.0) 8.0.0.307 and earlier versions,HwPhoneFinder(EMUI6.0) 9.3.0.310 and earlier versions,HwPhoneFinder(EMUI5.1) 9.2.2.303 and earlier versions,HiCinema 8.0.2.300 and earlier versions,HuaweiWear 21.0.0.360 and earlier versions,HiHealthApp 3.0.3.300 and earlier versions have an information exposure vulnerability. Encryption keys are stored in the system. The attacker can implement reverse engineering to obtain the encryption keys, causing information exposure.

    Published:Nov 22, 2017
    Last Modified:Apr 20, 2025
    EPS:Nov 22, 2017
    EPSS Score:0.00077
    CVSS Score:7.5

    Affected Products

    Vendor
    Huawei
    Product
    Crowdtest
    Vendor
    Huawei
    Product
    Hiapp
    Vendor
    Huawei
    Product
    Hicinema
    Vendor
    Huawei
    Product
    Hihealthapp
    Vendor
    Huawei
    Product
    Hiwallet
    Vendor
    Huawei
    Product
    Huawei Pay
    Vendor
    Huawei
    Product
    Huaweiwear
    Vendor
    Huawei
    Product
    Hwclouddrive\(emui6.0\)
    Vendor
    Huawei
    Product
    Hwparentcontrol
    Vendor
    Huawei
    Product
    Hwparentcontrolparent
    Vendor
    Huawei
    Product
    Hwphonefinder\(emui5.1\)
    Vendor
    Huawei
    Product
    Hwphonefinder\(emui6.0\)
    Vendor
    Huawei
    Product
    Skytone
    Vendor
    Huawei
    Product
    Smarthome

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High