CVE-2020-1801

MEDIUM

Huawei Mate 30 and Mate 30 Pro Firmware < 10.0.0.205 - Improper Authentication

Title source: llm
STIX 2.1

Description

There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the caller's identity in certain share scenario, successful exploit could cause information disclosure. Affected product versions include:Mate 30 Pro versions Versions earlier than 10.0.0.205(C00E202R7P2);Mate 30 versions Versions earlier than 10.0.0.205(C00E201R7P2).

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0010
EPSS Percentile 28.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

CWE
CWE-287
Status published
Products (2)
huawei/mate_30_firmware < 10.0.0.205\(c00e201r7p2\)
huawei/mate_30_pro_firmware < 10.0.0.205\(c00e202r7p2\)
Published Apr 10, 2020
Tracked Since Feb 18, 2026