cbcvebase.
CVE-2020-9080
published 2024-12-27

CVE-2020-9080: There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker could craft a specific input to exploit…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.13%
2.8th percentile
There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker could craft a specific input to exploit this vulnerability. Successful exploitation may lead to local privilege escalation. (Vulnerability ID: HWPSIRT-2020-05272) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9080.

Affected

6 ranges
VendorProductVersion rangeFixed in
huaweihuawei_mate_20_pro
huaweihuawei_mate_20_pro
huaweihuawei_nova_5i
huaweimate_20_pro_firmware
huaweimate_20_pro_firmware
huaweinova_5i_firmware< 10.0.0.125\(c01e123r7p3\)10.0.0.125\(c01e123r7p3\)
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.