There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the callers identity in certain share scenario, successful exploit could cause information disclosure. Affected product versions include:Mate 30 Pro versions Versions earlier than 10.0.0.205(C00E202R7P2);Mate 30 versions Versions earlier than 10.0.0.205(C00E201R7P2).
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mate_30_pro_firmware | Huawei | * | 10.0.0.205(c00e202r7p2) (excluding) |