CVE-2020-1840
published 2020-01-21CVE-2020-1840: HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A local attacker with high…
PriorityP426medium6CVSS 3.1
AVLACLPRHUINSUCHINAH
EPSS
0.22%
12.7th percentile
HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A local attacker with high privilege can execute a specific command to exploit this vulnerability. Successful exploitation may cause information leak and compromise the availability of the smart phones.Affected product versions include: HUAWEI Mate 20 versions Versions earlier than 10.0.0.175(C00E70R3P8)
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| huawei | mate_20_firmware | <= 10.0.0.175\(c00e70r3p8\) | — |
| rails | actionview | >= 5.0.0 < 5.2.4.3 | 5.2.4.3 |
| rails | actionview | >= 6.0.0 < 6.0.3.1 | 6.0.3.1 |
CVSS provenance
nvdv3.16.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:P/I:N/A:P
ghsa5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rf3j-pmqj-4m5q: HUAWEI Mate 20 smart phones with versions earlier than 10
ghsa_unreviewed·2022-05-24
CVE-2020-1840 [LOW] GHSA-rf3j-pmqj-4m5q: HUAWEI Mate 20 smart phones with versions earlier than 10
HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A local attacker with high privilege can execute a specific command to exploit this vulnerability. Successful exploitation may cause information leak and compromise the availability of the smart phones.Affected product versions include: HUAWEI Mate 20 versions Versions earlier than 10.0.0.175(C00E70R3P8)
GHSA
CSRF Vulnerability in rails-ujs
ghsa·2020-07-07·CVSS 5.0
CVE-2020-8167 [MEDIUM] CWE-352 CSRF Vulnerability in rails-ujs
CSRF Vulnerability in rails-ujs
There is a vulnerability in rails-ujs that allows attackers to send CSRF tokens to wrong domains.
Versions Affected: rails = 5.2.4.3, rails >= 6.0.3.1
Impact
This is a regression of CVE-2015-1840.
In the scenario where an attacker might be able to control the href attribute of an anchor tag or the action attribute of a form tag that will trigger a POST action, the attacker can set the href or action to a cross-origin URL, and the CSRF token will be sent.
Workarounds
To work around this problem, change code that allows users to control the href attribute of an anchor tag or the action attribute of a form tag to filter the user parameters.
For example, code like this:
link_to params
to code like this:
link_to filtered_params
def filtered_params
# F
Red Hat
rubygem-actionview: CSRF vulnerability in rails-ujs
vendor_redhat·2020-05-18·CVSS 5.0
CVE-2020-8167 [MEDIUM] CWE-352 rubygem-actionview: CSRF vulnerability in rails-ujs
rubygem-actionview: CSRF vulnerability in rails-ujs
A CSRF vulnerability exists in rails <= 6.0.3 rails-ujs module that could allow attackers to send CSRF tokens to wrong domains.
A flaw was found in rubygem-actionview. A regression of CVE-2015-1840 causes Rails-ujs to send CSRF tokens to wrong domains. The highest threat from this vulnerability is to data integrity.
Package: cfme-amazon-smartstate (CloudForms Management Engine 5) - Not affected
Package: cfme-gemset (CloudForms Management Engine 5) - Will not fix
No detection rules found.
No public exploits indexed.
2020-01-21
Published