CVE-2020-9082: Infoleak
There is an information disclosure vulnerability in several smartphones. The system has a logic judging error under certain scenario, the attacker should gain the permit to execute commands in ADB mode and then do a series of operation on the phone. Successful exploit could allow the attacker to gain certain information from certain apps locked by Applock. (Vulnerability ID: HWPSIRT-2019-07112)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9082.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-9082?
CVE-2020-9082 is classified as a medium severity vulnerability due to its potential for information disclosure under specific conditions.
How do I fix CVE-2020-9082?
To fix CVE-2020-9082, updating the affected Huawei Mate 20 devices to the latest firmware version is recommended.
Which devices are affected by CVE-2020-9082?
CVE-2020-9082 affects Huawei Mate 20 smartphones running firmware version 10.1.0.160(c00) or earlier.
What type of vulnerability is CVE-2020-9082?
CVE-2020-9082 is an information disclosure vulnerability that exploits a logic judging error in the system.
Can an attacker exploit CVE-2020-9082 remotely?
An attacker cannot exploit CVE-2020-9082 remotely as they must first gain permission to execute commands in ADB mode on the device.