6.6
CVSSv3

CVE-2020-1796

Published: 20/03/2020 Updated: 24/03/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.6 | Impact Score: 5.9 | Exploitability Score: 0.7
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not to do.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei mate_20_firmware

huawei mate_30_pro_firmware

Vendor Advisories

There is an improper authorization vulnerability in several smartphones The software incorrectly performs an authorization to certain user, successful exploit could allow a low privilege user to do certain operation which the user are supposed not to do (Vulnerability ID: HWPSIRT-2019-12104) This vulnerability has been assigned a Common Vulnerabi ...