CVE-2020-9064
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD
Description
Huawei smartphone Honor V30 with versions earlier than OxfordS-AN00A 10.0.1.167(C00E166R4P1) have an improper authentication vulnerability. Authentication to target component is improper when device performs an operation. Attackers exploit this vulnerability to obtain some information by loading malicious application, leading to information leak.
Affected (1)
Products: Huawei: Honor V30 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to oxfords-an00a_10.0.1.167\(c00e166r4p1\) |
| Running on/with | Platform Versions |
|---|---|
Huawei Honor V30 | All versions |
References (3)
Source: psirt@huawei.com
Broken Link
Source: nvd@nist.gov
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Timeline
No history available yet.