First published: Sun Nov 15 2020(Updated: )
An authentication bypass in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with physical access to device hardware to obtain system information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Harman Hermes | =1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19560 is rated as a high severity vulnerability due to its ability to allow authentication bypass.
To fix CVE-2019-19560, it is recommended to apply any available firmware updates provided by the manufacturer.
CVE-2019-19560 affects the Harman Hermes software version 1.5.
No, CVE-2019-19560 requires physical access to the device hardware for exploitation.
CVE-2019-19560 exposes system information to an attacker with physical access, impacting confidentiality.