Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
CVE-2020-9081 Details
Description
There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in specific mode to exploit this vulnerability. Successful exploit could allow the attacker to bypass app lock. (Vulnerability ID: HWPSIRT-2019-12144) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9081.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Dec 27, 2024Exploitation: NoneAutomatable: NoTechnical Impact: Partial
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.huawei.com/en/psirt/security-advisories/2020/huawei-sa-20200826-15-smartphone-en | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-863 | Incorrect Authorization | [email protected] |
| CWE-285 | Improper Authorization | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| huawei mate 20 firmware | < 10.1.0.160\(c00e160r3p8\) < 10.1.0.160\(c01e160r2p8\) |
CPE
Remediation
| |
| huawei mate 20 | All versions |
CPE
Remediation
| |
| huawei p30 firmware | < 10.1.0.160\(c00e160r2p11\) |
CPE
Remediation
| |
| huawei p30 | All versions |
CPE
Remediation
| |
| huawei p30 pro firmware | < 10.1.0.160\(c00e160r2p8\) < 10.1.0.160\(c01e160r2p8\) |
CPE
Remediation
| |
| huawei p30 pro | All versions |
CPE
Remediation
| |
| huawei princeton-al10d firmware | < 10.1.0.160\(c00e160r2p11\) |
CPE
Remediation
| |
| huawei princeton-al10d | All versions |
CPE
Remediation
| |
| huawei yale-al00a firmware | < 10.1.0.160\(c00e160r8p12\) |
CPE
Remediation
| |
| huawei yale-al00a | All versions |
CPE
Remediation
| |
| huawei yale-al50a firmware | < 10.1.0.88\(c00e88r8p1\) |
CPE
Remediation
| |
| huawei yale-al50a | All versions |
CPE
Remediation
| |
| huawei yalep-al10b firmware | < 10.1.0.160\(c00e160r8p12\) |
CPE
Remediation
| |
| huawei yalep-al10b | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jan 10, 2025 | Initial Analysis | [email protected] |
| Dec 27, 2024 | New CVE Received | [email protected] |