Huawei smart phones have a Factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker login the Talkback mode and can perform some operations to install a third-Party application. Affected products can be found in https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-frp-en.
Conclusion & alert: CVE-2019-19412 is rated Low Risk (22.7/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.21%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.03% | 0.21% | +0.19% |
| 2 | 2025-03-17 | 0.06% | 0.03% | -0.03% |
| 3 | 2023-03-07 | — | 0.06% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 4.6 | 3.1 | MEDIUM |
|
0.9 | 3.6 | [email protected] |
| 2.1 | 2.0 | LOW |
|
3.9 | 2.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| huawei | alp-al00b_firmware | < 9.0.0.181\(c00e87r2p20t8\) | cpe:2.3:o:huawei:alp-al00b_firmware:*:*:*:*:*:*:*:* |
| huawei | alp-l09_firmware | < 9.0.0.201\(c432e4r1p9\) | cpe:2.3:o:huawei:alp-l09_firmware:*:*:*:*:*:*:*:* |
| huawei | alp-l29_firmware | < 9.0.0.177\(c185e2r1p12t8\) | cpe:2.3:o:huawei:alp-l29_firmware:*:*:*:*:*:*:*:* |
| huawei | alp-l29_firmware | < 9.0.0.195\(c636e2r1p12\) | cpe:2.3:o:huawei:alp-l29_firmware:*:*:*:*:*:*:*:* |
| huawei | anne-al00_firmware | < 8.0.0.168\(c00\) | cpe:2.3:o:huawei:anne-al00_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-al00b_firmware | < 9.0.0.181\(c00e88r2p15t8\) | cpe:2.3:o:huawei:bla-al00b_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l09c_firmware | < 9.0.0.177\(c185e2r1p13t8\) | cpe:2.3:o:huawei:bla-l09c_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l09c_firmware | < 9.0.0.206\(c432e4r1p11\) | cpe:2.3:o:huawei:bla-l09c_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l29c_firmware | < 9.0.0.179\(c576e2r1p7t8\) | cpe:2.3:o:huawei:bla-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l29c_firmware | < 9.0.0.194\(c185e2r1p13\) | cpe:2.3:o:huawei:bla-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l29c_firmware | < 9.0.0.206\(c432e4r1p11\) | cpe:2.3:o:huawei:bla-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | bla-l29c_firmware | < 9.0.0.210\(c635e4r1p13\) | cpe:2.3:o:huawei:bla-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | berkeley-al20_firmware | < 9.0.0.156\(c00e156r2p14t8\) | cpe:2.3:o:huawei:berkeley-al20_firmware:*:*:*:*:*:*:*:* |
| huawei | berkeley-l09_firmware | < 8.0.0.172\(c432\) | cpe:2.3:o:huawei:berkeley-l09_firmware:*:*:*:*:*:*:*:* |
| huawei | berkeley-l09_firmware | < 8.0.0.173\(c636\) | cpe:2.3:o:huawei:berkeley-l09_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.159\(c185e2r1p12t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.159\(c461e2r1p11t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.160\(c432e7r1p11t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.165\(c605e2r1p12\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.168\(c636e7r1p13t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.168\(c782e3r1p11t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | emily-l29c_firmware | < 9.0.0.196\(c635e2r1p11t8\) | cpe:2.3:o:huawei:emily-l29c_firmware:*:*:*:*:*:*:*:* |
| huawei | figo-l03_firmware | < 9.1.0.130\(c605e6r1p5t8\) | cpe:2.3:o:huawei:figo-l03_firmware:*:*:*:*:*:*:*:* |
| huawei | figo-l21_firmware | < 9.1.0.130\(c185e6r1p5t8\) | cpe:2.3:o:huawei:figo-l21_firmware:*:*:*:*:*:*:*:* |
| huawei | figo-l21_firmware | < 9.1.0.130\(c635e6r1p5t8\) | cpe:2.3:o:huawei:figo-l21_firmware:*:*:*:*:*:*:*:* |
| huawei | figo-l23_firmware | < 9.1.0.130\(c605e6r1p5t8\) | cpe:2.3:o:huawei:figo-l23_firmware:*:*:*:*:*:*:*:* |
| huawei | figo-l31_firmware | < 9.1.0.130\(c432e8r1p5t8\) | cpe:2.3:o:huawei:figo-l31_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l03_firmware | < 9.1.0.121\(c605e5r1p1t8\) | cpe:2.3:o:huawei:florida-l03_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l21_firmware | < 8.0.0.129\(c605\) | cpe:2.3:o:huawei:florida-l21_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l21_firmware | < 8.0.0.131\(c432\) | cpe:2.3:o:huawei:florida-l21_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l21_firmware | < 8.0.0.132\(c185\) | cpe:2.3:o:huawei:florida-l21_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l22_firmware | < 8.0.0.132\(c636\) | cpe:2.3:o:huawei:florida-l22_firmware:*:*:*:*:*:*:*:* |
| huawei | florida-l23_firmware | < 8.0.0.144\(c605\) | cpe:2.3:o:huawei:florida-l23_firmware:*:*:*:*:*:*:*:* |
| huawei | p_smart_firmware | < 9.1.0.130\(c185e6r1p5t8\) | cpe:2.3:o:huawei:p_smart_firmware:*:*:*:*:*:*:*:* |
| huawei | p_smart_firmware | < 9.1.0.130\(c605e6r1p5t8\) | cpe:2.3:o:huawei:p_smart_firmware:*:*:*:*:*:*:*:* |
| huawei | p_smart_firmware | < 9.1.0.124\(c636e6r1p5t8\) | cpe:2.3:o:huawei:p_smart_firmware:*:*:*:*:*:*:*:* |
| huawei | y7s_firmware | < 9.1.0.124\(c636e6r1p5t8\) | cpe:2.3:o:huawei:y7s_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.148\(c635\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.155\(c185\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.155\(c605\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.156\(c605\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.157\(c432\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.147\(c461\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.148\(zafc185\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.160\(c185\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.160\(c605\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.168\(c432\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | nova_3e_firmware | < 8.0.0.172\(c636\) | cpe:2.3:o:huawei:nova_3e_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.147\(c461\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.148\(zafc185\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.160\(c185\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.160\(c605\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.168\(c432\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | p20_lite_firmware | < 8.0.0.172\(c636\) | cpe:2.3:o:huawei:p20_lite_firmware:*:*:*:*:*:*:*:* |
| huawei | honor_view_10_firmware | < 9.0.0.202\(c567e6r1p12t8\) | cpe:2.3:o:huawei:honor_view_10_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-al00a_firmware | < 8.0.0.182\(c00\) | cpe:2.3:o:huawei:leland-al00a_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-l21a_firmware | < 8.0.0.135\(c185\) | cpe:2.3:o:huawei:leland-l21a_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-l21a_firmware | < 9.1.0.118\(c636e4r1p1t8\) | cpe:2.3:o:huawei:leland-l21a_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-l22a_firmware | < 9.1.0.118\(c636e4r1p1t8\) | cpe:2.3:o:huawei:leland-l22a_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-l22c_firmware | < 9.1.0.118\(c636e4r1p1t8\) | cpe:2.3:o:huawei:leland-l22c_firmware:*:*:*:*:*:*:*:* |
| huawei | leland-l31a_firmware | < 8.0.0.139\(c432\) | cpe:2.3:o:huawei:leland-l31a_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-01-frp-en | Vendor Advisory |