CVE-2020-9082
Description
There is an information disclosure vulnerability in several smartphones. The system has a logic judging error under certain scenario, the attacker should gain the permit to execute commands in ADB mode and then do a series of operation on the phone. Successful exploit could allow the attacker to gain certain information from certain apps locked by Applock. (Vulnerability ID: HWPSIRT-2019-07112)
This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9082.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
A logic error in Huawei smartphones allows an attacker with ADB access to bypass Applock and read protected app information.
Vulnerability
An information disclosure vulnerability exists in several Huawei smartphones, including the HUAWEI Mate 20 with versions earlier than 10.1.0.160(C00) [1]. The system contains a logic judging error under certain scenarios that can be exploited to access information from apps protected by Applock [1].
Exploitation
To exploit this vulnerability, an attacker must first gain the permission to execute commands in ADB (Android Debug Bridge) mode [1]. This typically requires physical access to the device or having previously enabled USB debugging. Once ADB access is obtained, the attacker performs a series of operations on the phone to trigger the logic error [1].
Impact
Successful exploitation allows the attacker to obtain certain information from apps that are locked by Applock [1]. This constitutes an information disclosure vulnerability that compromises the confidentiality of user data protected by the Applock feature [1].
Mitigation
Huawei released software updates to fix this vulnerability. For the HUAWEI Mate 20, the resolved version is 10.1.0.160(C00) [1]. Users should update their devices to the latest available firmware version to mitigate the risk. No workarounds are mentioned in the advisory.
AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
1- Range: Versions earlier than 10.1.0.160(C00)
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.