CVE-2020-9260

Severity
6.5MEDIUM
EPSS
0.0%
top 86.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 10
Latest updateMay 24

Description

HUAWEI P30 and HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E22R2P5) and versions earlier than 10.1.0.160(C00E160R2P8) have an information disclosure vulnerability. Certain WI-FI function's default configuration in the system seems insecure, an attacker should craft a WI-FI hotspot to launch the attack. Successful exploit could cause information disclosure.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDhuawei/p30_firmware< 10.1.0.123\(c432e22r2p5\)
NVDhuawei/p30_pro_firmware< 10.1.0.160\(c00e160r2p8\)

🔴Vulnerability Details

2
GHSA
GHSA-rcr8-2g3p-62g2: HUAWEI P30 and HUAWEI P30 Pro smartphones with versions earlier than 102022-05-24
CVEList
CVE-2020-9260: HUAWEI P30 and HUAWEI P30 Pro smartphones with versions earlier than 102020-07-10
CVE-2020-9260 (MEDIUM CVSS 6.5) | HUAWEI P30 and HUAWEI P30 Pro smart | cvebase.io