CVE-2017-8186: Huawei Mha-AL00A
Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.
The Bastet of some Huawei mobile phones with software of earlier than MHA-AL00BC00B231 versions has a DOS vulnerability due to the lack of parameter validation. An attacker may trick a user into installing a malicious APP. The APP can modify specific parameter to cause system reboot.
Affected products
- Huawei Mha-AL00A: before mha-al00bc00b231 (fixed in mha-al00bc00b231)
Published 2017-11-22. Last modified 2026-06-17.