CVE-2017-2710
BTV-W09C229B002CUSTC229D005,BTV-W09C233B029, earlier than BTV-W09C100B006CUSTC100D002 versions, earlier than BTV-W09C128B003CUSTC128D002 versions, earlier than BTV-W09C199B002CUSTC199D002 versions, earlier than BTV-W09C209B005CUSTC209D001 versions, earlier than BTV-W09C331B002CUSTC331D001 versions, earlier than CRR-L09C432B390 versions, earlier than CRR-L09C605B355CUSTC605D003 versions have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker can perform some operations to update the Google account. As a result, the FRP function is bypassed.
Published:Nov 22, 2017
Last Modified:Apr 20, 2025
EPS:Nov 22, 2017
EPSS Score:0.00026
CVSS Score:4.6
Affected Products
Vendor
Product
Action
Vendor
Huawei
Product
Beethoven-w09a
Huawei
Beethoven-w09a
Vendor
Huawei
Product
Beethoven-w09a Firmware
Huawei
Beethoven-w09a Firmware
Vendor
Huawei
Product
Crr-l09
Huawei
Crr-l09
Vendor
Huawei
Product
Crr-l09 Firmware
Huawei
Crr-l09 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
