CVE-2020-9119
- EPSS 0.03%
- Veröffentlicht 24.12.2020 16:15:15
- Zuletzt bearbeitet 21.11.2024 05:40:05
There is a privilege escalation vulnerability on some Huawei smart phones due to design defects. The attacker needs to physically contact the mobile phone and obtain higher privileges, and execute relevant commands, resulting in the user's privilege ...
CVE-2020-9256
- EPSS 0.15%
- Veröffentlicht 18.07.2020 01:16:35
- Zuletzt bearbeitet 21.11.2024 05:40:17
Huawei Mate 30 Pro smartphones with versions earlier than 10.1.0.150(C00E136R5P3) have an improper authorization vulnerability. The system does not properly restrict the use of system service by applications, the attacker should trick the user into i...
CVE-2020-1838
- EPSS 0.02%
- Veröffentlicht 06.07.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:11:28
HUAWEI Mate 30 Pro with versions earlier than 10.1.0.150(C00E136R5P3) have is an improper authentication vulnerability. The device does not sufficiently validate certain credential of user's face, an attacker could craft the credential of the user, s...
CVE-2020-1801
- EPSS 0.11%
- Veröffentlicht 10.04.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:11:24
There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the caller's identity in certain share scenario, successful exploit could cause information disclosure. ...
CVE-2020-1795
- EPSS 0.02%
- Veröffentlicht 20.03.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:11:23
There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation when the Digital Balance function is on. Successful exploit could allow the attacker to bypass the Digital Balance limit after a se...
CVE-2020-1796
- EPSS 0.06%
- Veröffentlicht 20.03.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:11:23
There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not t...
CVE-2020-1793
- EPSS 0.06%
- Veröffentlicht 20.03.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:23
There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is lock...
CVE-2020-1794
- EPSS 0.06%
- Veröffentlicht 20.03.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:11:23
There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is lock...
CVE-2020-0022
- EPSS 7.73%
- Veröffentlicht 13.02.2020 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:52:45
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction...