PT-2020-20532 · Huawei · Honor 20 Pro

Published

2020-09-03

·

Updated

2021-07-21

·

CVE-2020-9235

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions HONOR 20 PRO versions earlier than 10.1.0.230 HONOR 20 PRO versions earlier than 10.1.0.231 HONOR 20 PRO versions earlier than 10.1.0.212 HONOR 20 PRO versions earlier than 10.1.0.160
Description A design error in a module of Huawei smartphones HONOR 20 PRO results in a lack of control of input, leading to an information vulnerability. This vulnerability can be exploited by attackers to obtain some information, potentially causing an information leak.
Recommendations For versions earlier than 10.1.0.230, update to version 10.1.0.230 or later. For versions earlier than 10.1.0.231, update to version 10.1.0.231 or later. For versions earlier than 10.1.0.212, update to version 10.1.0.212 or later. For versions earlier than 10.1.0.160, update to version 10.1.0.160 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-9235

Affected Products

Honor 20 Pro