Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-9237

Опубликовано: 17 авг. 2020
Источник: nvd
CVSS3: 6.7
CVSS2: 4.6
EPSS Низкий

Описание

Huawei smartphone Taurus-AL00B with versions earlier than 10.1.0.126(C00E125R5P3) have a user after free vulnerability. A module is lack of lock protection. Attackers can exploit this vulnerability by launching specific request. This could compromise normal service of the affected device.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:taurus-al00b_firmware:*:*:*:*:*:*:*:*
Версия до 10.1.0.126\(c00e125r5p3\) (исключая)
cpe:2.3:h:huawei:taurus-al00b:-:*:*:*:*:*:*:*

EPSS

Процентиль: 8%
0.0003
Низкий

6.7 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-416

Связанные уязвимости

github
больше 3 лет назад

Huawei smartphone Taurus-AL00B with versions earlier than 10.1.0.126(C00E125R5P3) have a user after free vulnerability. A module is lack of lock protection. Attackers can exploit this vulnerability by launching specific request. This could compromise normal service of the affected device.

EPSS

Процентиль: 8%
0.0003
Низкий

6.7 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-416