Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-1833

Опубликовано: 29 мая 2020
Источник: nvd
CVSS3: 2.4
CVSS2: 2.1
EPSS Низкий

Описание

Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability. A logic error occurs when handling clock function, an attacker should do a series of crafted operations quickly before the phone is unlocked, successful exploit could allow the attacker to access clock information without unlock the phone.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:honor_9x_firmware:*:*:*:*:*:*:*:*
Версия до 9.1.1.172\(c00e170r8p1\) (исключая)
cpe:2.3:h:huawei:honor_9x:-:*:*:*:*:*:*:*

EPSS

Процентиль: 6%
0.00023
Низкий

2.4 Low

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
больше 3 лет назад

Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability. A logic error occurs when handling clock function, an attacker should do a series of crafted operations quickly before the phone is unlocked, successful exploit could allow the attacker to access clock information without unlock the phone.

EPSS

Процентиль: 6%
0.00023
Низкий

2.4 Low

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-287