CVE-2017-8154: Huawei Honor 8 Lite Firmware

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

The Themes App Honor 8 Lite Huawei mobile phones with software of versions before Prague-L31C576B172, versions before Prague-L31C530B160, versions before Prague-L31C432B180 has a man-in-the-middle (MITM) vulnerability due to the use of the insecure HTTP protocol for theme download. An attacker may exploit this vulnerability to tamper with downloaded themes.

Affected products

  • Huawei Honor 8 Lite Firmware: before prague-l31c530b160 (fixed in prague-l31c530b160); before prague-l31c576b172 (fixed in prague-l31c576b172); before prague-l31c432b180 (fixed in prague-l31c432b180)

Published 2018-04-11. Last modified 2026-06-17.