CVE-2020-1878: Huawei Oxfords-AN00A Firmware
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Huawei smartphone OxfordS-AN00A with versions earlier than 10.0.1.152D(C735E152R3P3),versions earlier than 10.0.1.160(C00E160R4P1) have an improper authentication vulnerability. Authentication to target component is improper when device performs an operation. Attackers exploit this vulnerability to obtain some information by loading malicious application, leading to information leak.
Affected products
- Huawei Oxfords-AN00A Firmware: after 10.0.1.152d\(c735e152r3p3\), before 10.0.1.160\(c00e160r4p1\) (fixed in 10.0.1.160\(c00e160r4p1\)); before 10.0.1.152d\(c735e152r3p3\) (fixed in 10.0.1.152d\(c735e152r3p3\))
Published 2020-03-20. Last modified 2026-06-17.