Vulnerabilities > Huawei > Mate 20 X Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-12-07 CVE-2020-9247 Classic Buffer Overflow vulnerability in Huawei products
There is a buffer overflow vulnerability in several Huawei products.
network
huawei CWE-120
6.8
2020-10-12 CVE-2020-9109 Insufficient Verification of Data Authenticity vulnerability in Huawei products
There is an information disclosure vulnerability in several smartphones.
local
huawei CWE-345
1.9
2020-08-11 CVE-2020-9244 Improper Authentication vulnerability in Huawei products
HUAWEI Mate 20 versions Versions earlier than 10.1.0.160(C00E160R3P8);HUAWEI Mate 20 Pro versions Versions earlier than 10.1.0.270(C431E7R1P5),Versions earlier than 10.1.0.270(C635E3R1P5),Versions earlier than 10.1.0.273(C636E7R2P4);HUAWEI Mate 20 X versions Versions earlier than 10.1.0.160(C00E160R2P8);HUAWEI P30 versions Versions earlier than 10.1.0.160(C00E160R2P11);HUAWEI P30 Pro versions Versions earlier than 10.1.0.160(C00E160R2P8);HUAWEI Mate 20 RS versions Versions earlier than 10.1.0.160(C786E160R3P8);HonorMagic2 versions Versions earlier than 10.0.0.187(C00E61R2P11);Honor20 versions Versions earlier than 10.0.0.175(C00E58R4P11);Honor20 PRO versions Versions earlier than 10.0.0.194(C00E62R8P12);HonorMagic2 versions Versions earlier than 10.0.0.187(C00E61R2P11);HonorV20 versions Versions earlier than 10.0.0.188(C00E62R2P11) have an improper authentication vulnerability.
local
low complexity
huawei CWE-287
4.6
2020-07-17 CVE-2020-9252 Path Traversal vulnerability in Huawei products
HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8), HUAWEI Mate 20 X versions earlier than 10.1.0.135(C00E135R2P8), HUAWEI Mate 20 RS versions earlier than 10.1.0.160(C786E160R3P8), and Honor Magic2 smartphones versions earlier than 10.1.0.160(C00E160R2P11) have a path traversal vulnerability.
local
low complexity
huawei CWE-22
2.1
2020-04-27 CVE-2019-5303 Improper Input Validation vulnerability in Huawei products
There are two denial of service vulnerabilities on some Huawei smartphones.
2.9
2020-04-27 CVE-2019-5302 Improper Input Validation vulnerability in Huawei products
There are two denial of service vulnerabilities on some Huawei smartphones.
2.9
2020-02-18 CVE-2020-1882 Incorrect Authorization vulnerability in Huawei products
Huawei mobile phones Ever-L29B versions earlier than 10.0.0.180(C185E6R3P3), earlier than 10.0.0.180(C432E6R1P7), earlier than 10.0.0.180(C636E5R2P3); HUAWEI Mate 20 RS versions earlier than 10.0.0.175(C786E70R3P8); HUAWEI Mate 20 X versions earlier than 10.0.0.176(C00E70R2P8); and Honor Magic2 versions earlier than 10.0.0.175(C00E59R2P11) have an improper authorization vulnerability.
local
low complexity
huawei CWE-863
2.1
2020-02-13 CVE-2020-0022 Incorrect Calculation vulnerability in multiple products
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation.
low complexity
google huawei CWE-682
8.8
2019-08-14 CVE-2019-9506 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation.
4.8
2019-07-10 CVE-2019-5221 Path Traversal vulnerability in Huawei Mate 20 X Firmware
There is a path traversal vulnerability on Huawei Share.
low complexity
huawei CWE-22
3.3