CVE-2020-9148: Medium severity emui 5.0 vulnerability
Published Apr 1, 2021
·Updated
An application bypass mechanism vulnerability exists in a component interface of Huawei Smartphone. Local attackers can exploit this vulnerability to delete user SMS messages.
Affected Software
9 affected components
Huawei Emui=9.1.0
Huawei Emui=10.0.0
Huawei Emui=10.1.0
Huawei Emui=10.1.1
Huawei Emui=11.0.0
Huawei Magic Ui=3.0.0
Huawei Magic Ui=3.1.0
Huawei Magic Ui=3.1.1
Huawei Magic Ui=4.0.0
Event History
Apr 1, 2021
CVE Published
via MITRE·05:56 PM
Data Sourced
via MITRE·05:56 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-9148?
CVE-2020-9148 is rated as a medium severity vulnerability.
2
How can I fix CVE-2020-9148?
To fix CVE-2020-9148, users should update their Huawei Smartphone to the latest version of the EMUI or Magic UI software that addresses the vulnerability.
3
Which versions of Huawei software are affected by CVE-2020-9148?
CVE-2020-9148 affects Huawei EMUI versions 9.1.0 and 10.0.0 to 11.0.0, as well as Magic UI versions 3.0.0 to 4.0.0.
4
Can CVE-2020-9148 be exploited remotely?
CVE-2020-9148 requires local access to the device, so it cannot be exploited remotely.
5
What impact does CVE-2020-9148 have on users?
CVE-2020-9148 allows local attackers to delete user SMS messages on affected Huawei smartphones.