CVE-2020-1788

Honor V30 smartphones with versions earlier than 10.0.1.135(C00E130R4P1) have an improper authentication vulnerability. Certain applications do not properly validate the identity of another application who would call its interface. An attacker could trick the user into installing a malicious application. Successful exploit could allow unauthorized actions leading to information disclosure.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:honor_v30_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:honor_v30:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:11

Type Values Removed Values Added
References () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-02-smartphone-en - Vendor Advisory () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200115-02-smartphone-en - Vendor Advisory

Information

Published : 2020-01-21 23:15

Updated : 2024-11-21 05:11


NVD link : CVE-2020-1788

Mitre link : CVE-2020-1788

CVE.ORG link : CVE-2020-1788


JSON object : View

Products Affected

huawei

  • honor_v30
  • honor_v30_firmware
CWE
CWE-287

Improper Authentication