First published: Wed Jan 13 2021(Updated: )
There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei EMUI | =9.1.0 | |
Huawei EMUI | =9.1.1 | |
Huawei EMUI | =10.0.0 | |
Huawei EMUI | =10.1.0 | |
Huawei EMUI | =10.1.1 | |
Huawei Magic UI | =2.1.1 | |
Huawei Magic UI | =3.0.0 | |
Huawei Magic UI | =3.1.0 | |
Huawei Magic UI | =3.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9143 is classified as a low severity vulnerability.
To fix CVE-2020-9143, ensure your device is updated to the latest firmware version provided by Huawei.
CVE-2020-9143 affects Huawei smartphones running EMUI versions 9.1.0, 9.1.1, 10.0.0, 10.1.0, 10.1.1, and Magic UI versions 2.1.1, 3.0.0, 3.1.0, and 3.1.1.
CVE-2020-9143 exploits a missing authentication vulnerability which may lead to low-sensitive information exposure.
If you are using a vulnerable version of Huawei's EMUI or Magic UI, your device may be at risk from CVE-2020-9143.