cbcvebase.
CVE-2020-9250
published 2024-12-20

CVE-2020-9250: There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit…

PriorityP410low3.3CVSS 3.1
AVLACLPRNUIRSUCNINAL
EPSS
0.12%
2.2th percentile
There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit this vulnerability. Due to insufficient verification, successful exploitation may impact the service. (Vulnerability ID: HWPSIRT-2019-12302) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9250.

Affected

2 ranges
VendorProductVersion rangeFixed in
huaweihuawei_mate_20_pro
huaweimate_20_pro_firmware
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.