CVE-2020-1793: Medium severity Huawei Mate 20 Firmware vulnerability
There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is locked. Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
HUAWEI Mate 20to a version that resolves this vulnerability.Fixed in 10.0.0.188Patch C00E74R3P8 - Upgrade
Upgrade
HUAWEI Mate 30 Proto a version that resolves this vulnerability.Fixed in 10.0.0.203Patch C00E202R7P2
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-1793.
What is the severity level of CVE-2020-1793?
The severity level of CVE-2020-1793 is medium with a value of 4.6.
What is the affected software for CVE-2020-1793?
The affected software for CVE-2020-1793 include HUAWEI Mate 20 Firmware (up to version 10.0.0.188(c00e74r3p8)) and Huawei Mate 30 Pro Firmware (up to version 10.0.0.203(c00e202r7p2)).
What is the impact of CVE-2020-1793?
The impact of CVE-2020-1793 is that an attacker could exploit the vulnerability to gain certain data of the application that is locked.
Is HUAWEI Mate 20 and Mate 30 Pro vulnerable to CVE-2020-1793?
No, HUAWEI Mate 20 and Mate 30 Pro are not vulnerable to CVE-2020-1793.