CVE-2024-6245
Default Credentials in ssh service for SmartPlay in Maruti Suzuki
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.4EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
28 Oct 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Use of Default Credentials vulnerability in Maruti Suzuki SmartPlay on Linux (Infotainment Hub modules) allows attacker to try common or default usernames and passwords.The issue was detected on a 2022 Maruti Suzuki Brezza in India Market.
This issue affects SmartPlay: 66T0.05.50.
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Affected products
Faurecia Clarion Electronics Co., Ltd. · SmartPlayWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →