First published: Thu Mar 26 2020(Updated: )
HUAWEI smartphones P30 with versions earlier than 10.0.0.185(C00E85R1P11) have an improper access control vulnerability. The software incorrectly restricts access to a function interface from an unauthorized actor, the attacker tricks the user into installing a crafted application, successful exploit could allow the attacker do certain unauthenticated operations.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P30 Firmware | <10.0.0.185\(c00e85r1p11\) | |
HUAWEI P30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this HUAWEI P30 smartphone vulnerability is CVE-2020-1800.
The severity rating for CVE-2020-1800 is high, with a severity value of 7.8.
HUAWEI smartphones P30 with versions earlier than 10.0.0.185(C00E85R1P11) are affected by CVE-2020-1800.
An attacker can exploit CVE-2020-1800 by tricking the user into installing a crafted application, thereby gaining unauthorized access to a function interface.
Yes, a fix is available for CVE-2020-1800. Users should update their HUAWEI P30 smartphones to version 10.0.0.185(C00E85R1P11) or later.