CVE-2020-9226
Last modified
CVE-2020-9226 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. The system does not improper check signature of specific software package, an attacker may exploit this vulnerability to load a crafted software package to the device.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. The system does not improper check signature of specific software package, an attacker may exploit this vulnerability to load a crafted software package to the device.
Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | P30 Firmware | < 10.1.0.135\(c00e135r2p11\) |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-9226?
How severe is CVE-2020-9226?
How do I fix CVE-2020-9226?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-9211There is an out-of-bound read and write vulnerability in Hua…7.2
- CVE-2020-9212There is a vulnerability in some version of USG9500 that the…6.5
- CVE-2020-9213There is a denial of service vulnerability in some huawei pr…7.5
- CVE-2020-9222There is a privilege escalation vulnerability in Huawei Fusi…7.8
- CVE-2020-9223There is a denial of service vulnerability in some Huawei sm…7.5
- CVE-2020-9225FusionSphere OpenStack 6.5.1 have an improper permissions ma…7.8
- CVE-2020-9227Huawei Smart Phones Moana-AL00B with versions earlier than 1…5.5
- CVE-2020-9228FusionCompute 8.0.0 has an information disclosure vulnerabil…7.5
- CVE-2020-9229FusionCompute 8.0.0 has an information disclosure vulnerabil…4.4
- CVE-2020-9230WS5800-10 version 10.0.3.25 has a denial of service vulnerab…6.5
- CVE-2020-9233FusionCompute 8.0.0 have an insufficient authentication vuln…9.1
- CVE-2020-9235Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0…5.5
Are you affected by CVE-2020-9226?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
