Home

Description

There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in specific mode to exploit this vulnerability. Successful exploit could allow the attacker to bypass app lock. (Vulnerability ID: HWPSIRT-2019-12144) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9081.

PUBLISHED Reserved 2020-02-18 | Published 2024-12-27 | Updated 2024-12-27 | Assigner huawei




LOW: 3.5CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Problem types

CWE-285 Improper Authorization

Product status

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R3P8)
affected

Versions earlier than 10.1.0.160(C01E160R2P8)
affected

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R2P11)
affected

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R2P8)
affected

Versions earlier than 10.1.0.160(C01E160R2P8)
affected

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R2P11)
affected

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R8P12)
affected

Default status
unaffected

Versions earlier than 10.1.0.88(C00E88R8P1)
affected

Default status
unaffected

Versions earlier than 10.1.0.160(C00E160R8P12)
affected

References

www.huawei.com/...s/2020/huawei-sa-20200826-15-smartphone-en

cve.org (CVE-2020-9081)

nvd.nist.gov (CVE-2020-9081)

Download JSON