CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-6245

Medium Severity
SVRS
30/100

CVSSv3
NA/10

EPSS
0.00033/1

CVE-2024-6245: Default Credentials vulnerability in Maruti Suzuki SmartPlay allows unauthorized access. The vulnerability lies in the use of default usernames and passwords within the Infotainment Hub modules running on Linux. An attacker could exploit this weakness by attempting common or default credentials, potentially gaining control over vehicle functions. The issue was identified on a 2022 Maruti Suzuki Brezza in the Indian market, specifically affecting SmartPlay version 66T0.05.50. With a SOCRadar Vulnerability Risk Score (SVRS) of 30, while not critical, it still represents a notable security risk that should be addressed. Exploitation could compromise vehicle data and functionality. Immediate action, while not critical, is recommended to mitigate potential threats related to this vulnerability.

No tags available
2024-10-28

2024-11-07

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

No news found for this CVE

Social Media

CVE-2024-6245 Use of Default Credentials vulnerability in Maruti Suzuki SmartPlay on Linux (Infotainment Hub modules) allows attacker to try common or default usernames and passwords.The issue was detected on a 20... https://t.co/ldhQOvo60V
0
0
0

Affected Software

No affected software found for this CVE

References

ReferenceLink
[email protected]https://www.global-infotainment-system.com/en/top.html
[email protected]https://www.marutisuzuki.com/corporate/technology/smartplay-systems

CWE Details

No CWE details found for this CVE

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence