CVE-2020-9259
MEDIUMHuawei Honor V30 Firmware < 10.1.0.212(C00E210R5P1) - Improper Authentication
Title source: llmDescription
Huawei Honor V30 smartphones with versions earlier than 10.1.0.212(C00E210R5P1) have an improper authentication vulnerability. The system does not sufficiently validate certain parameter passed from the bottom level, the attacker should trick the user into installing a malicious application and control the bottom level, successful exploit could cause information disclosure.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-02-smartphone-en
Scores
CVSS v3
6.5
EPSS
0.0012
EPSS Percentile
30.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Details
CWE
CWE-287
Status
published
Products (1)
huawei/honor_v30_firmware
< 10.1.0.212\(c00e210r5p1\)
Published
Jul 17, 2020
Tracked Since
Feb 18, 2026