CVE-2020-1795
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/03/2020
Last modified:
24/03/2020
Description
There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation when the Digital Balance function is on. Successful exploit could allow the attacker to bypass the Digital Balance limit after a series of operations.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).
Impact
Base Score 3.x
2.40
Severity 3.x
LOW
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:mate_20_firmware:*:*:*:*:*:*:*:* | 10.0.0.188\(c00e74r3p8\) (excluding) | |
| cpe:2.3:h:huawei:mate_20:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:mate_30_pro_firmware:*:*:*:*:*:*:*:* | 10.0.0.203\(c00e202r7p2\) (excluding) | |
| cpe:2.3:h:huawei:mate_30_pro:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



