There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit this vulnerability. Due to insufficient verification, successful exploitation may impact the service. (Vulnerability ID: HWPSIRT-2019-12302) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9250.
History

Fri, 20 Dec 2024 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-522
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 20 Dec 2024 02:00:00 +0000

Type Values Removed Values Added
Description There is an insufficient authentication vulnerability in some Huawei smart phone. An unauthenticated, local attacker can crafts software package to exploit this vulnerability. Due to insufficient verification, successful exploitation may impact the service. (Vulnerability ID: HWPSIRT-2019-12302) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9250.
Weaknesses CWE-287
References
Metrics cvssV3_1

{'score': 3.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published: 2024-12-20T01:50:07.201Z

Updated: 2024-12-20T17:14:55.905Z

Reserved: 2020-02-18T00:00:00.000Z

Link: CVE-2020-9250

cve-icon Vulnrichment

Updated: 2024-12-20T17:14:50.645Z

cve-icon NVD

Status : Received

Published: 2024-12-20T02:15:05.150

Modified: 2024-12-20T18:15:23.860

Link: CVE-2020-9250

cve-icon Redhat

No data.