VYPR
Unrated severityNVD Advisory· Published May 29, 2020· Updated Aug 4, 2024

CVE-2020-1797

CVE-2020-1797

Description

HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.185(C00E74R3P8) have an improper authorization vulnerability. The system does not properly restrict certain operation in ADB mode, successful exploit could allow certain user break the limit of digital balance function.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

HUAWEI Mate 20 smartphones before 10.0.0.185(C00E74R3P8) have an improper authorization vulnerability in ADB mode, allowing bypass of the digital balance function.

Vulnerability

CVE-2020-1797 is an improper authorization vulnerability in HUAWEI Mate 20 smartphones running versions earlier than 10.0.0.185(C00E74R3P8). The system does not properly restrict certain operations when the device is in ADB (Android Debug Bridge) mode, allowing a local user to bypass intended restrictions [1].

Exploitation

An attacker with physical access to the device and the ability to enable ADB mode (or with ADB already enabled) can exploit this vulnerability. The successful exploit requires the attacker to connect via ADB and execute certain privileged operations that are not properly authorized. No additional authentication beyond ADB access is mentioned [1].

Impact

Successful exploitation allows a user to break the limit of the digital balance function, which is a parental control or usage restriction feature on the device. This could lead to unauthorized access to restricted content or bypass of time or usage limits set by the device owner [1].

Mitigation

Huawei released a software update to fix this vulnerability. The resolved version is 10.0.0.185(C00E74R3P8) for HUAWEI Mate 20. Users should update to this version or later. No workarounds were provided in the advisory [1].

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.