CVE-2020-9092: XSS
HUAWEI Mate 20 versions earlier than 10.1.0.163(C00E160R3P8) have a JavaScript injection vulnerability. A module does not verify a specific input. This could allow attackers to bypass filter mechanism to launch JavaScript injection. This could compromise normal service of the affected module.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9092?
CVE-2020-9092 is a JavaScript injection vulnerability in HUAWEI Mate 20 versions earlier than 10.1.0.163(C00E160R3P8).
How does CVE-2020-9092 affect HUAWEI Mate 20?
CVE-2020-9092 allows attackers to bypass filter mechanism and launch JavaScript injection, potentially compromising the normal service of the affected module.
How severe is CVE-2020-9092?
CVE-2020-9092 has a severity rating of medium with a score of 4.6.
How can I fix CVE-2020-9092?
To fix CVE-2020-9092, it is recommended to update HUAWEI Mate 20 to version 10.1.0.163(C00E160R3P8) or later.
Where can I find more information about CVE-2020-9092?
You can find more information about CVE-2020-9092 on the Huawei Security Advisory website.