First published: Fri Dec 27 2024(Updated: )
There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in specific mode to exploit this vulnerability. Successful exploit could allow the attacker to bypass app lock. (Vulnerability ID: HWPSIRT-2019-12144) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9081.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Huawei Mate 20 RS Firmware | <10.1.0.160\(c00e160r3p8\) | |
Huawei Mate 20 Pro | ||
All of | ||
Huawei P30 Firmware | <10.1.0.160\(c00e160r2p11\) | |
HUAWEI P30 | ||
All of | ||
Huawei P30 Pro Firmware | <10.1.0.160\(c00e160r2p8\) | |
Huawei P30 Pro Firmware | ||
All of | ||
Huawei Princeton-AL10D | <10.1.0.160\(c00e160r2p11\) | |
Huawei Princeton-AL10D | ||
All of | ||
Huawei Yale-AL00A | <10.1.0.160\(c00e160r8p12\) | |
Huawei Yale-AL00A | ||
All of | ||
Huawei Yale-AL50A | <10.1.0.88\(c00e88r8p1\) | |
Huawei Jad-al50 | ||
All of | ||
Huawei YaleP-AL10B | <10.1.0.160\(c00e160r8p12\) | |
Huawei YaleP-AL10B | ||
All of | ||
Huawei Mate 20 RS Firmware | <10.1.0.160\(c01e160r2p8\) | |
Huawei Mate 20 Pro | ||
All of | ||
Huawei P30 Pro Firmware | <10.1.0.160\(c01e160r2p8\) | |
Huawei P30 Pro Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9081 has been classified as a high severity vulnerability due to its potential for unauthorized access.
To mitigate CVE-2020-9081, ensure that your Huawei smartphone firmware is updated to the latest version provided by Huawei.
CVE-2020-9081 affects certain Huawei smartphone models including Mate 20, P30, and P30 Pro running specific firmware versions.
Exploitation of CVE-2020-9081 allows attackers to potentially bypass app lock security features on affected Huawei devices.
While CVE-2020-9081 is a discovered vulnerability, there may not be a publicly known exploit currently being actively utilized.