CVE-2020-9256
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Huawei Mate 30 Pro smartphones with versions earlier than 10.1.0.150(C00E136R5P3) have an improper authorization vulnerability. The system does not properly restrict the use of system service by applications, the attacker should trick the user into installing a malicious application, successful exploit could cause a denial of audio service.
Los teléfonos inteligentes Huawei Mate 30 Pro con versiones anteriores a 10.1.0.150(C00E136R5P3), presentan una vulnerabilidad de autorización inapropiada. El sistema no restringe apropiadamente el uso del servicio del sistema por las aplicaciones, el atacante debe engañar al usuario para que instale una aplicación maliciosa, una explotación con éxito podría causar una denegación del servicio de audio
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-02-18 CVE Reserved
- 2020-07-17 CVE Published
- 2023-04-02 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-05-smartphone-en | 2020-07-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Mate 30 Pro Firmware Search vendor "Huawei" for product "Mate 30 Pro Firmware" | < 10.1.0.150\(c00e136r5p3\) Search vendor "Huawei" for product "Mate 30 Pro Firmware" and version " < 10.1.0.150\(c00e136r5p3\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 30 Pro Search vendor "Huawei" for product "Mate 30 Pro" | - | - |
Safe
|