2 results (0.002 seconds)

CVSS: 5.0EPSS: 0%CPEs: 9EXPL: 0

27 Dec 2024 — There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in specific mode to exploit this vulnerability. Successful exploit could allow the attacker to bypass app lock. (Vulnerability ID: HWPSIRT-2019-12144) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9081. • https://www.huawei.com/en/psirt/security-advisories/2020/huawei-sa-20200826-15-smartphone-en • CWE-285: Improper Authorization •

CVSS: 3.6EPSS: 0%CPEs: 1EXPL: 0

28 Mar 2020 — There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit this vulnerability. Due to insufficient verification, successful exploitation may impact the service. (Vulnerability ID: HWPSIRT-2019-12302) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9250. Micro Focus Vibe version 4.0.6 suffers from a cross site scripting vulnerability. • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200729-01-smartphone-en • CWE-287: Improper Authentication CWE-522: Insufficiently Protected Credentials •