VYPR
Unrated severityNVD Advisory· Published Mar 20, 2020· Updated Aug 4, 2024

CVE-2020-1795

CVE-2020-1795

Description

There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation when the Digital Balance function is on. Successful exploit could allow the attacker to bypass the Digital Balance limit after a series of operations.Affected product versions include:HUAWEI Mate 20 versions Versions earlier than 10.0.0.188(C00E74R3P8);HUAWEI Mate 30 Pro versions Versions earlier than 10.0.0.203(C00E202R7P2).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A logic error in Huawei's Digital Balance function allows attackers to bypass usage restrictions on Mate 20 and Mate 30 Pro smartphones.

Vulnerability

A logic error exists in the Digital Balance function of certain Huawei smartphones. The software does not properly restrict operations when Digital Balance is enabled, allowing an attacker to bypass the intended usage limits after a series of operations. Affected products include HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) and HUAWEI Mate 30 Pro versions earlier than 10.0.0.203(C00E202R7P2) [1].

Exploitation

An attacker with physical access to the device can exploit this vulnerability by performing a specific sequence of operations while Digital Balance is active. No authentication or special privileges are required beyond the ability to interact with the device's user interface [1].

Impact

Successful exploitation allows the attacker to bypass the Digital Balance limit, effectively circumventing parental controls or usage restrictions. This could lead to unauthorized access to restricted features or extended device usage beyond configured limits [1].

Mitigation

Huawei has released software updates to fix this vulnerability. Users should update their devices to the following resolved versions: HUAWEI Mate 20 to 10.0.0.188(C00E74R3P8) or later, and HUAWEI Mate 30 Pro to 10.0.0.203(C00E202R7P2) or later. No workarounds are documented [1].

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.