cbcvebase.
CVE-2020-9089
published 2024-12-27

CVE-2020-9089: There is an information vulnerability in Huawei smartphones. A function in a module can be called without verifying the caller's access. Attackers with user…

PriorityP410low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.14%
3.5th percentile
There is an information vulnerability in Huawei smartphones. A function in a module can be called without verifying the caller's access. Attackers with user access can exploit this vulnerability to obtain some information. This can lead to information leak. (Vulnerability ID: HWPSIRT-2019-12141) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9089.

Affected

8 ranges
VendorProductVersion rangeFixed in
huaweihuawei_p30_pro
huaweihuawei_p30_pro
huaweihuawei_p30_pro
huaweihuawei_p30_pro
huaweip30_pro_firmware< 10.1.0.120\(c431e19r2p5\)10.1.0.120\(c431e19r2p5\)
huaweip30_pro_firmware< 10.1.0.120\(c432e19r2p5\)10.1.0.120\(c432e19r2p5\)
huaweip30_pro_firmware< 10.1.0.126\(c10e11r5p1\)10.1.0.126\(c10e11r5p1\)
huaweip30_pro_firmware< 10.1.0.126\(c461e11r3p1\)10.1.0.126\(c461e11r3p1\)
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.