CVE-2014-9135: Medium severity huawei p7 firmware vulnerability
The PackageInstaller module in Huawei P7-L10 smartphones before V100R001C00B136 allows remote attackers to spoof the origin website and bypass the website whitelist protection mechanism via a crafted package.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9135?
CVE-2014-9135 is considered a high severity vulnerability due to its potential for remote exploitation.
How does CVE-2014-9135 affect Huawei P7-L10 smartphones?
CVE-2014-9135 allows remote attackers to spoof the origin website and bypass whitelist protections on affected Huawei P7-L10 devices.
How do I fix CVE-2014-9135?
To fix CVE-2014-9135, users should update their Huawei P7-L10 smartphones to firmware version V100R001C00B136 or later.
Can my Huawei P7-L10 be attacked through CVE-2014-9135?
Yes, if your Huawei P7-L10 is running firmware version V100R001C00B135 or earlier, it is vulnerable to attacks exploiting CVE-2014-9135.
Is CVE-2014-9135 still relevant today?
CVE-2014-9135 remains relevant for users with outdated firmware on their Huawei P7-L10 smartphones.