PT-2020-20553 · Huawei · Honor V30

Published

2020-07-17

·

Updated

2020-07-22

·

CVE-2020-9259

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Huawei Honor V30 versions prior to 10.1.0.212(C00E210R5P1)
Description The system has an improper authentication issue due to insufficient validation of certain parameters. An attacker could exploit this by tricking a user into installing a malicious application, allowing control of the lower level and potentially causing information disclosure.
Recommendations For versions prior to 10.1.0.212(C00E210R5P1), update to version 10.1.0.212(C00E210R5P1) or later to resolve the issue. As a temporary workaround, consider restricting the installation of applications from untrusted sources to minimize the risk of exploitation.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-9259

Affected Products

Honor V30