VYPR
Medium severity4.6NVD Advisory· Published Nov 22, 2017· Updated May 13, 2026

CVE-2017-2708

CVE-2017-2708

Description

The 'Find Phone' function in Nice smartphones with software versions earlier before Nice-AL00C00B0135 has an authentication bypass vulnerability. An unauthenticated attacker may wipe and factory reset the phone by special steps. Due to missing authentication of the 'Find Phone' function, an attacker may exploit the vulnerability to bypass the 'Find Phone' function in order to use the phone normally.

Affected products

2
  • cpe:2.3:o:huawei:nice_firmware:*:*:*:*:*:*:*:*
    Range: <nice-al00c00b0135
  • Huawei Technologies Co., Ltd./Nicev5
    Range: Versions earlier before Nice-AL00C00B0135

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.