VYPR

Infotainment

by Harman

CVEs (3)

  • CVE-2023-40293MedAug 14, 2023
    risk 0.44cvss 6.8epss 0.02

    Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection object.

  • CVE-2023-40291MedAug 14, 2023
    risk 0.44cvss 6.8epss 0.00

    Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an internal project name.

  • CVE-2023-40292MedAug 14, 2023
    risk 0.28cvss 4.3epss 0.00

    Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets.