CVE-2019-19563: Low severity harman hermes vulnerability
Published Nov 15, 2020
·Updated
A misconfiguration in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
Affected Software
1 affected component
Harman Hermes=2.1
Event History
Nov 15, 2020
CVE Published
via MITRE·11:44 PM
Data Sourced
via MITRE·11:44 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19563?
CVE-2019-19563 has a high severity rating due to the potential for unauthorized access to sensitive modem information.
2
How can I fix CVE-2019-19563?
Fixing CVE-2019-19563 involves securing the debug interface and restricting physical access to the device.
3
Who is affected by CVE-2019-19563?
CVE-2019-19563 affects Mercedes-Benz vehicles utilizing Harman HERMES version 2.1.
4
What are the potential impacts of CVE-2019-19563?
The potential impacts of CVE-2019-19563 include the exposure of cellular modem information which could be exploited by attackers with physical access.
5
What type of vulnerability is CVE-2019-19563?
CVE-2019-19563 is classified as a misconfiguration vulnerability in a debug interface.