#VU28288 Improper Authentication in Huawei P30 - CVE-2020-1798
Published: May 27, 2020
Huawei P30
Huawei
Description
The vulnerability allows a local user to bypass authentication process.
The vulnerability exists due to an error in when processing authentication requests when handling NFC work. An authenticated attacker with physical access can establish a NFC connection to the target phone and perform a series of operations on the target phone, which is beyond the guest user's privilege.