CVE-2020-1833

LOW

Honor 9X <9.1.1.172(C00E170R8P1 - Auth Bypass

Title source: llm
STIX 2.1

Description

Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability. A logic error occurs when handling clock function, an attacker should do a series of crafted operations quickly before the phone is unlocked, successful exploit could allow the attacker to access clock information without unlock the phone.

References (1)

Core 1

Scores

CVSS v3 2.4
EPSS 0.0002
EPSS Percentile 6.7%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-287
Status published
Products (1)
huawei/honor_9x_firmware < 9.1.1.172\(c00e170r8p1\)
Published May 29, 2020
Tracked Since Feb 18, 2026