Information Disclosure in Huawei Honor V20 Smartphones
CVE-2020-1803

5.3MEDIUM

Key Information:

Vendor
Huawei
Status
Vendor
CVE Published:
20 April 2020

Summary

Huawei Honor V20 smartphones are vulnerable to an information disclosure risk due to insufficient validation of smart wearable device identities. In specific scenarios, this flaw allows an attacker to collect sensitive information from the victim's smartphone after gaining other necessary details. Exploiting this vulnerability could lead to unintended exposure of personal data, raising significant security concerns for users. For detailed information and remediation, refer to Huawei's security advisories.

Affected Version(s)

Honor V20 Versions earlier than 10.0.0.179(C636E3R4P3)

Honor V20 Versions earlier than 10.0.0.180(C185E3R3P3)

Honor V20 Versions earlier than 10.0.0.180(C432E10R3P4)

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.