CVE-2018-7922: Huawei Alp-l09 Firmware
High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.
Huawei ALP-L09 smart phones with versions earlier than ALP-L09 8.0.0.150(C432) have an insufficient input validation vulnerability due to lack of parameter check. An attacker tricks the user who has root privilege to install a crafted application, the application may modify the specific data to exploit the vulnerability. Successful exploit could allow the attacker to execute arbitrary code.
Affected products
- Huawei Alp-l09 Firmware: before 8.0.0.150\(c432\) (fixed in 8.0.0.150\(c432\))
Published 2018-09-12. Last modified 2026-06-17.