{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-26T06:36:42.808","vulnerabilities":[{"cve":{"id":"CVE-2020-9257","sourceIdentifier":"psirt@huawei.com","published":"2020-07-17T23:15:11.757","lastModified":"2026-06-17T03:27:39.123","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earlier than 10.1.0.160(C00E160R2P8) have a buffer overflow vulnerability. The software access data past the end, or before the beginning, of the intended buffer when handling certain operations of certificate, the attacker should trick the user into installing a malicious application, successful exploit may cause code execution."},{"lang":"es","value":"Los teléfonos inteligentes HUAWEI P30 Pro con versiones anteriores a 10.1.0.123(C432E19R2P5patch02), versiones anteriores a 10.1.0.126(C10E11R5P1) y versiones anteriores a 10.1.0.160(C00E160R2P8), presentan una vulnerabilidad de desbordamiento del búfer. El software accede a los datos más allá del final o antes del comienzo del búfer previsto cuando maneja determinadas operaciones de certificado, el atacante debe engañar al usuario para que instale una aplicación maliciosa, una explotación con éxito puede causar una ejecución de código"}],"affected":[{"source":"psirt@huawei.com","affectedData":[{"vendor":"Huawei","product":"HUAWEI P30 Pro","versions":[{"version":"Versions earlier than 10.1.0.123(C432E19R2P5patch02)","status":"affected"},{"version":"Versions earlier than 10.1.0.126(C10E11R5P1)","status":"affected"},{"version":"Versions earlier than 10.1.0.160(C00E160R2P8)","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-120"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:huawei:p30_pro_firmware:*:*:*:*:*:*:*:*","versionEndExcluding":"10.1.0.123\\(c432e19r2p5patch02\\)","matchCriteriaId":"1CFEFFE4-9C9D-42BD-A183-338606D53ACC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:huawei:p30_pro:-:*:*:*:*:*:*:*","matchCriteriaId":"6DB671DB-CB5B-46E0-B221-722D051184DE"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:huawei:p30_pro_firmware:*:*:*:*:*:*:*:*","versionEndExcluding":"10.1.0.126\\(c10e11r5p1\\)","matchCriteriaId":"DC534873-48EE-4C7F-A27E-DB70BA3FD5D0"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:huawei:p30_pro:-:*:*:*:*:*:*:*","matchCriteriaId":"6DB671DB-CB5B-46E0-B221-722D051184DE"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:huawei:p30_pro_firmware:*:*:*:*:*:*:*:*","versionEndExcluding":"10.1.0.160\\(c00e160r2p8\\)","matchCriteriaId":"4818ECF7-B4D4-4AF4-9DAA-FE08F56B26FC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:huawei:p30_pro:-:*:*:*:*:*:*:*","matchCriteriaId":"6DB671DB-CB5B-46E0-B221-722D051184DE"}]}]}],"references":[{"url":"https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-03-smartphone-en","source":"psirt@huawei.com","tags":["Vendor Advisory"]},{"url":"https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200715-03-smartphone-en","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}