A vulnerability has been discovered in all versions of Smartplay headunits, which are widely used in Suzuki and Toyota cars. This misconfiguration can lead to information disclosure, leaking sensitive details such as diagnostic log traces, system logs, headunit passwords, and personally identifiable information (PII). The exposure of such information may have serious implications for user privacy and system integrity.
References
Configurations
No configuration.
History
06 Nov 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-922 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
20 Sep 2024, 12:30
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
18 Sep 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-18 20:15
Updated : 2024-11-06 20:35
NVD link : CVE-2024-39339
Mitre link : CVE-2024-39339
CVE.ORG link : CVE-2024-39339
JSON object : View
Products Affected
No product.
CWE
CWE-922
Insecure Storage of Sensitive Information