CVE-2020-9080

Published: Dic 27, 2024 Last Modified: Gen 10, 2025
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,8
Attack Vector: local
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high

Description

AI Translation Available

There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker could craft a specific input to exploit this vulnerability. Successful exploitation may lead to local privilege escalation. (Vulnerability ID: HWPSIRT-2020-05272)

This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9080.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0002
Percentile
0,0th
Updated

EPSS Score Trend (Last 90 Days)

269

Improper Privilege Management

Draft
Common Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Gain Privileges Or Assume Identity
Applicable Platforms
All platforms may be affected
View CWE Details
Operating System

Mate 20 Pro \(Ud\) Firmware by Huawei

cpe:2.3:o:huawei:mate_20_pro_\(ud\)_firmware:10.1.0.135\(c00e135r3p8\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Nova 5I Firmware by Huawei

Version Range Affected
To 10.0.0.125\(c01e123r7p3\) (exclusive)
cpe:2.3:o:huawei:nova_5i_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Mate 20 Pro Firmware by Huawei

cpe:2.3:o:huawei:mate_20_pro_firmware:10.1.0.135\(c01e135r2p8\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200819-01-smart…