ZeroHour

CVE-2020-1788

CVSS 3.1
5.5 medium
EPSS
<1%p46
Published
()
Modified
Description

Honor V30 smartphones with versions earlier than 10.0.1.135(C00E130R4P1) have an improper authentication vulnerability. Certain applications do not properly validate the identity of another application who would call its interface. An attacker could trick the user into installing a malicious application. Successful exploit could allow unauthorized actions leading to information disclosure.

Vendors
huawei
Products
honor v30 firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.