Description
HUAWEI P30;HUAWEI P30 Pro;Tony-AL00B smartphones with versions earlier than 10.1.0.135(C00E135R2P11); versions earlier than 10.1.0.135(C00E135R2P8), versions earlier than 10.1.0.135 have an improper authentication vulnerability. Due to the identity of the message sender not being properly verified, an attacker can exploit this vulnerability through man-in-the-middle attack to induce user to access malicious URL.
Published: 2020-06-15
Score: 6.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-29905 HUAWEI P30;HUAWEI P30 Pro;Tony-AL00B smartphones with versions earlier than 10.1.0.135(C00E135R2P11); versions earlier than 10.1.0.135(C00E135R2P8), versions earlier than 10.1.0.135 have an improper authentication vulnerability. Due to the identity of the message sender not being properly verified, an attacker can exploit this vulnerability through man-in-the-middle attack to induce user to access malicious URL.
History

No history.

Subscriptions

Huawei P30 P30 Firmware P30 Pro P30 Pro Firmware Tony-al00b Tony-al00b Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-04T10:19:19.771Z

Reserved: 2020-02-18T00:00:00.000Z

Link: CVE-2020-9076

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-06-15T16:15:23.270

Modified: 2024-11-21T05:39:59.047

Link: CVE-2020-9076

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses