CVE-2019-5222: Huawei Honor Magic 2 Firmware

Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.

There is an information disclosure vulnerability on Secure Input of certain Huawei smartphones in Versions earlier than Tony-AL00B 9.1.0.216(C00E214R2P1). The Secure Input does not properly limit certain system privilege. An attacker tricks the user to install a malicious application and successful exploit could result in information disclosure.

Affected products

  • Huawei Honor Magic 2 Firmware: before tony-al00b_9.1.0.216\(c00e214r2p1\) (fixed in tony-al00b_9.1.0.216\(c00e214r2p1\))

Published 2019-07-17. Last modified 2026-06-17.