← back
CVE-2024-6245

Default Credentials in ssh service for SmartPlay in Maruti Suzuki

CVSS 7.4 HIGHEPSS 0.2%CWE-1392
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.4EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
28 Oct 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Use of Default Credentials vulnerability in Maruti Suzuki SmartPlay on Linux (Infotainment Hub modules) allows attacker to try common or default usernames and passwords.The issue was detected on a 2022 Maruti Suzuki Brezza in India Market. This issue affects SmartPlay: 66T0.05.50.
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →