Vulnerability Details CVE-2020-1796
There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not to do.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.4%
CVSS Severity
CVSS v3 Score 6.6
CVSS v2 Score 4.6
Products affected by CVE-2020-1796
-
cpe:2.3:h:huawei:mate_20:-
-
cpe:2.3:h:huawei:mate_30_pro:-
-
cpe:2.3:o:huawei:mate_20_firmware:-
-
cpe:2.3:o:huawei:mate_20_firmware:10.0.0.175(c00e70r3p8)
-
cpe:2.3:o:huawei:mate_20_firmware:10.0.0.185(c00e74r3p8)
-
cpe:2.3:o:huawei:mate_20_firmware:10.0.0.188(c00e74r3p8)
-
cpe:2.3:o:huawei:mate_20_firmware:9.0.0.195(c01e195r2p1)
-
cpe:2.3:o:huawei:mate_20_firmware:9.0.0.205(c00e205r2p1)
-
cpe:2.3:o:huawei:mate_20_firmware:9.1.0.131(c00e131r3p1)
-
cpe:2.3:o:huawei:mate_20_firmware:9.1.0.139(c00e133r3p1)
-
cpe:2.3:o:huawei:mate_30_pro_firmware:-
-
cpe:2.3:o:huawei:mate_30_pro_firmware:10.0.0.203(c00e202r7p2)