VYPR
Unrated severityNVD Advisory· Published Mar 20, 2020· Updated Aug 4, 2024

CVE-2020-1793

CVE-2020-1793

Description

There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient authentication in certain scenarios, successful exploit could allow the attacker to gain certain data of the application which is locked. Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper authentication in applock on Huawei Mate 20 and Mate 30 Pro allows local attackers to access data of locked applications.

Vulnerability

An improper authentication vulnerability exists in the applock feature of Huawei Mate 20 and Mate 30 Pro smartphones. The applock does not perform sufficient authentication in certain scenarios, which could allow an attacker to bypass the lock. Affected versions include HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) and HUAWEI Mate 30 Pro versions earlier than 10.0.0.203(C00E202R7P2). [1]

Exploitation

The attacker requires physical access or the ability to interact with the device under specific conditions. The exact exploitation steps are not disclosed, but the vulnerability is triggered when the applock fails to properly authenticate the user, enabling the attacker to access certain data of locked applications.

Impact

Successful exploitation allows the attacker to gain access to certain data of applications that are locked by the applock feature, leading to unauthorized information disclosure.

Mitigation

Huawei has released software updates to fix these vulnerabilities. Users should upgrade to the following resolved versions: HUAWEI Mate 20 to 10.0.0.188(C00E74R3P8) and HUAWEI Mate 30 Pro to 10.0.0.203(C00E202R7P2). [1]

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.