Vulnerability Bulletins

CVE-2017-2739

   
Affected software HUAWEI
 
The upgrade package of Huawei Vmall APP Earlier than HwVmall 1.5.3.0 versions is transferred through HTTP. A man in the middle (MITM) can tamper with the upgrade package of Huawei Vmall APP, and to implant the malicious applications.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2017-2739