CVE-2020-1796
6.6MEDIUM
Key Information:
- Vendor
- Huawei
- Vendor
- CVE Published:
- 20 March 2020
Summary
There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not to do.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).
Affected Version(s)
HUAWEI Mate 20;HUAWEI Mate 30 Pro Versions earlier than 10.0.0.188(C00E74R3P8)
HUAWEI Mate 20;HUAWEI Mate 30 Pro Versions earlier than 10.0.0.203(C00E202R7P2)
References
CVSS V3.1
Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved