ZeroHour

CVE-2020-1801

CVSS 3.1
5.5 medium
EPSS
<1%p46
Published
()
Modified
Description

There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the caller's identity in certain share scenario, successful exploit could cause information disclosure. Affected product versions include:Mate 30 Pro versions Versions earlier than 10.0.0.205(C00E202R7P2);Mate 30 versions Versions earlier than 10.0.0.205(C00E201R7P2).

Vendors
huawei
Products
mate 30 pro firmware, mate 30 firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.