cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-40291,https://securityvulnerability.io/vulnerability/CVE-2023-40291,Root Access Vulnerability in Harman Infotainment System via USB-to-Ethernet,"The Harman Infotainment system 20190525031613 has a security flaw that allows unauthorized root access through SSH when connected via a USB-to-Ethernet dongle. This vulnerability stems from the use of a weak password based on an internal project name, posing significant risks to the security and privacy of connected vehicles. Users are urged to take precautionary measures until an official patch is provided.",Samsung,Harman Infotainment,6.8,MEDIUM,0.0008500000112690032,false,,false,false,false,,,false,false,,2023-08-14T04:15:00.000Z,0 CVE-2023-40292,https://securityvulnerability.io/vulnerability/CVE-2023-40292,IP Address Disclosure in Harman Infotainment Systems via CarPlay CTRL,"Harman Infotainment systems starting from version 20190525031613 expose sensitive IP address information through CarPlay CTRL packets. This vulnerability poses a risk as unauthorized individuals could exploit this information to target vehicles and their systems more effectively, leading to potential privacy and security breaches. Users of these infotainment systems should be aware of this issue and take necessary precautions.",Samsung,Harman Infotainment,4.3,MEDIUM,0.0006000000284984708,false,,false,false,false,,,false,false,,2023-08-14T04:15:00.000Z,0 CVE-2023-40293,https://securityvulnerability.io/vulnerability/CVE-2023-40293,Command Injection Vulnerability in Harman Infotainment Systems,"The Harman Infotainment systems, starting from version 20190525031613, have a vulnerability that allows an attacker to execute arbitrary commands through unauthenticated Remote Procedure Calls (RPC) over a D-Bus connection. This vulnerability could potentially enable unauthorized access, allowing malicious actors to exploit the system without proper authentication. Users of affected systems should take caution and implement necessary security measures to mitigate potential risks.",Samsung,Harman Infotainment,6.8,MEDIUM,0.008460000157356262,false,,false,false,false,,,false,false,,2023-08-14T04:15:00.000Z,0