CVE-2020-1840

MEDIUM

HUAWEI Mate 20 <10.0.0.175 - Privilege Escalation

Title source: llm
STIX 2.1

Description

HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A local attacker with high privilege can execute a specific command to exploit this vulnerability. Successful exploitation may cause information leak and compromise the availability of the smart phones.Affected product versions include: HUAWEI Mate 20 versions Versions earlier than 10.0.0.175(C00E70R3P8)

References (1)

Core 1

Scores

CVSS v3 6.0
EPSS 0.0005
EPSS Percentile 16.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H

Details

CWE
CWE-287
Status published
Products (1)
huawei/mate_20_firmware < 10.0.0.175\(c00e70r3p8\)
Published Jan 21, 2020
Tracked Since Feb 18, 2026