CVE-2020-9226

MEDIUM

HUAWEI P30 Firmware < 10.1.0.135(C00E135R2P11) - Improper Cryptographic Signature Verification

Title source: llm
STIX 2.1

Description

HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. The system does not improper check signature of specific software package, an attacker may exploit this vulnerability to load a crafted software package to the device.

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0004
EPSS Percentile 13.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Details

CWE
CWE-347
Status published
Products (1)
huawei/p30_firmware < 10.1.0.135\(c00e135r2p11\)
Published Jul 06, 2020
Tracked Since Feb 18, 2026