CVE-2020-1800: High severity Huawei P30 Firmware vulnerability
HUAWEI smartphones P30 with versions earlier than 10.0.0.185(C00E85R1P11) have an improper access control vulnerability. The software incorrectly restricts access to a function interface from an unauthorized actor, the attacker tricks the user into installing a crafted application, successful exploit could allow the attacker do certain unauthenticated operations.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
HUAWEI smartphones P30to a version that resolves this vulnerability.Fixed in 10.0.0.185(C00E85R1P11) - Compensating control
Protect users from social engineering: do not install crafted/unknown applications (only install apps from trusted sources).
Event History
Frequently Asked Questions
What is the vulnerability ID of this HUAWEI P30 smartphone vulnerability?
The vulnerability ID of this HUAWEI P30 smartphone vulnerability is CVE-2020-1800.
What is the severity rating for CVE-2020-1800?
The severity rating for CVE-2020-1800 is high, with a severity value of 7.8.
Which HUAWEI smartphones are affected by CVE-2020-1800?
HUAWEI smartphones P30 with versions earlier than 10.0.0.185(C00E85R1P11) are affected by CVE-2020-1800.
How can an attacker exploit CVE-2020-1800?
An attacker can exploit CVE-2020-1800 by tricking the user into installing a crafted application, thereby gaining unauthorized access to a function interface.
Is there a fix available for CVE-2020-1800?
Yes, a fix is available for CVE-2020-1800. Users should update their HUAWEI P30 smartphones to version 10.0.0.185(C00E85R1P11) or later.