Security Advisory

CVE-2018-7932

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-04-24 15:00:00
Last updated 2024-08-05 06:37:59
Assigner huawei
State PUBLISHED

Description

Huawei AppGallery versions before 8.0.4.301 has an arbitrary Javascript running vulnerability. An attacker may set up a malicious network environment and trick user into accessing a malicious web page to bypass the whitelist mechanism, which make the malicious Javascript loaded and run in the smart phone.