VYPR

Hermes

by Mercedes-Benz

CVEs (5)

  • CVE-2021-23909MedMay 13, 2021
    risk 0.41cvss 6.3epss 0.02

    An issue was discovered in HERMES 2.1 in the MBUX Infotainment System on Mercedes-Benz vehicles through 2021. The SH2 MCU allows remote code execution.

  • CVE-2021-23910MedMay 13, 2021
    risk 0.35cvss 5.3epss 0.02

    An issue was discovered in HERMES 2.1 in the MBUX Infotainment System on Mercedes-Benz vehicles through 2021. There is an out-of-bounds array access in RemoteDiagnosisApp.

  • CVE-2019-19562MedNov 16, 2020
    risk 0.30cvss 4.6epss 0.01

    An authentication bypass in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with physical access to device hardware to obtain system information.

  • CVE-2019-19560MedNov 16, 2020
    risk 0.30cvss 4.6epss 0.01

    An authentication bypass in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with physical access to device hardware to obtain system information.

  • CVE-2019-19556MedNov 16, 2020
    risk 0.30cvss 4.6epss 0.00

    An authentication bypass in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with physical access to device hardware to obtain system information.