Home/Product/huawei mate 20 firmware
Product

huawei mate 20 firmware

32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-9082
< 10.1.0.160\(c00\)
There is an information disclosure vulnerability in several smartphones. The system has a logic judging error under certain scenar
3.5LOW
CVE-2020-9081
< 10.1.0.160\(c00e160r3p8\)
There is an improper authorization vulnerability in some Huawei smartphones. An attacker could perform a series of operation in sp
3.5LOW
CVE-2021-22440
all versions
There is a path traversal vulnerability in some Huawei products. The vulnerability is due to that the software uses external input
4.6MEDIUM
CVE-2020-9247
< 10.1.0.160\(c00e160r3p8\)
There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configurati
7.8HIGH
CVE-2020-9113
< 10.0.0.188\(c00e74r3p8\)
HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to i
8.0HIGH
CVE-2020-9092
< 10.1.0.163\(c00e160r3p8\)
HUAWEI Mate 20 versions earlier than 10.1.0.163(C00E160R3P8) have a JavaScript injection vulnerability. A module does not verify a
4.6MEDIUM
CVE-2020-9109
< 10.1.0.160\(c00e160r3p8\)
There is an information disclosure vulnerability in several smartphones. The device does not sufficiently validate the identity of
4.6MEDIUM
CVE-2020-9083
< 10.1.0.163\(c00e160r3p8\)
HUAWEI Mate 20 smart phones with Versions earlier than 10.1.0.163(C00E160R3P8) have a denial of service (DoS) vulnerability. The a
2.4LOW
CVE-2020-9103
all versions
HUAWEI Mate 20 smartphones with 9.0.0.205(C00E205R2P1) have a logic error vulnerability. In a special scenario, the system does no
4.6MEDIUM
CVE-2020-9244
< 10.1.0.160\(c00e160r3p8\)
HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8);HUAWEI Mate 20 Pro versions earlier than 10.1.0.270
6.8MEDIUM
CVE-2020-9252
< 10.1.0.160\(c00e160r3p8\)
HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8), HUAWEI Mate 20 X versions earlier than 10.1.0.135(C00E135R2P8), HUAW
2.3LOW
CVE-2020-1831
< 10.0.0.195\(sp31c00e74r3p8\)
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.195(SP31C00E74R3P8) have an improper authorization vulnerability. The
2.4LOW
CVE-2020-1797
< 10.0.0.185\(c00e74r3p8\)
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.185(C00E74R3P8) have an improper authorization vulnerability. The sys
2.4LOW
CVE-2019-5303
< 9.1.0.131\(c00e131r3p1\)
There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messag
5.3MEDIUM
CVE-2019-5302
< 9.1.0.131\(c00e131r3p1\)
There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messag
5.3MEDIUM
CVE-2020-1807
< 10.0.0.188\(c00e74r3p8\)
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.188(C00E74R3P8) have an improper authorization vulnerability. The sof
3.5LOW
CVE-2020-1796
<= 10.0.0.188\(c00e74r3p8\)
There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorization to cer
6.6MEDIUM
CVE-2020-1795
< 10.0.0.188\(c00e74r3p8\)
There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation when the Di
2.4LOW
CVE-2020-1794
< 10.0.0.188\(c00e74r3p8\)
There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication
4.6MEDIUM
CVE-2020-1793
< 10.0.0.188\(c00e74r3p8\)
There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication
4.6MEDIUM
CVE-2020-1791
< 10.0.0.185\(c00e74r3p8\)
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.185(C00E74R3P8) have an improper authorization vulnerability. The sys
2.4LOW
CVE-2020-0022
< 10.0.0.195\(c00e74r3p8\)
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation.
8.8HIGH
CVE-2020-1840
<= 10.0.0.175\(c00e70r3p8\)
HUAWEI Mate 20 smart phones with versions earlier than 10.0.0.175(C00E70R3P8) have an insufficient authentication vulnerability. A
6.0MEDIUM
CVE-2020-1787
< 9.1.0.139\(c00e133r3p1\)
HUAWEI Mate 20 smartphones versions earlier than 9.1.0.139(C00E133R3P1) have an improper authentication vulnerability. The system
6.6MEDIUM
CVE-2019-5251
< 9.1.0.139\(c00e133r3p1\)
There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames
5.5MEDIUM
CVE-2019-5227
< hima-al00b_9.1.0.135\(c00e133r2p1\)
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than
5.5MEDIUM
CVE-2019-5225
< hima-al00b_9.1.0.135\(c00e200r2p1\)
P30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions earlier than
7.8HIGH
CVE-2019-5226
< hima-al00b_9.1.0.135\(c00e133r2p1\)
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than
5.5MEDIUM
CVE-2019-9506
all versions
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not pre
8.1HIGH
CVE-2019-5220
< hima-al00b\/hima-tl00b_9.0.0.200\(c00e200r2p1\)
There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently verify the
4.6MEDIUM
CVE-2019-5296
< hma-al00c00b175
Mate20 Huawei smartphones versions earlier than HMA-AL00C00B175 have an out-of-bounds read vulnerability. An attacker with a high
3.9LOW
CVE-2018-7956
all versions
Huawei VIP App is a mobile app for Malaysia customers that purchased P20 Series, Nova 3/3i and Mate 20. There is a vulnerability i
5.3MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin