First published: Mon Apr 27 2020(Updated: )
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.188(C00E74R3P8) have an improper authorization vulnerability. The software does not properly restrict certain user's modification of certain configuration file, successful exploit could allow the attacker to bypass app lock after a series of operation in ADB mode.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Mate 20 Firmware | <10.0.0.188\(c00e74r3p8\) | |
HUAWEI Mate 20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1807 is a vulnerability that affects HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.188(C00E74R3P8), allowing unauthorized modification of certain configuration files.
CVE-2020-1807 allows an attacker to bypass app lock after a series of specific operations on the device.
The severity of CVE-2020-1807 is rated as low, with a severity value of 3.5.
To fix CVE-2020-1807, update your HUAWEI Mate 20 smartphone to version 10.0.0.188(C00E74R3P8) or later, as recommended by the vendor.
You can find more information about CVE-2020-1807 on the Huawei Security Advisory page: [link to Huawei Security Advisory page](https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200422-01-smartphone-en).