← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-1840

HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A local attacker with high privilege can execute a specific command to exploit this vulnerability. Successful exploitation may cause information leak and compromise the availability of the smart phones.Affected product versions include: HUAWEI Mate 20 versions Versions earlier than 10.0.0.175(C00E70R3P8)

No Active Exploit Signals
CVSS Base Score
6.0
MEDIUM
EPSS Probability:0.22%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
huawei mate_20_firmware all
huawei mate_20 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.222%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityHuawei Technologies · Vendor · China
Reserved2019-11-29T00:00:00
Published2020-01-21T18:14:09
Last Updated2024-08-04T06:53:58

LINK COPIED TO CLIPBOARD