Lucene search

K
cveMitreCVE-2023-40292
HistoryAug 14, 2023 - 4:15 a.m.

CVE-2023-40292

2023-08-1404:15:11
mitre
web.nvd.nist.gov
27
cve-2023-40292
harman infotainment
carplay
ip address disclosure
security vulnerability

CVSS3

4.3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

4.7

Confidence

High

EPSS

0.001

Percentile

22.7%

Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets.

Affected configurations

Nvd
Node
samsungharman_infotainmentMatch20190525031613
VendorProductVersionCPE
samsungharman_infotainment20190525031613cpe:2.3:a:samsung:harman_infotainment:20190525031613:*:*:*:*:*:*:*

CVSS3

4.3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

4.7

Confidence

High

EPSS

0.001

Percentile

22.7%

Related for CVE-2023-40292