PT-2024-28457 · Unknown · Smartplay Headunits

Published

2024-09-18

·

Updated

2024-11-06

·

CVE-2024-39339

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Smartplay headunits (affected versions not specified)
Description A misconfiguration in Smartplay headunits can lead to information disclosure, potentially leaking sensitive details such as diagnostic log traces, system logs, headunit passwords, and personally identifiable information (PII). This exposure may have serious implications for user privacy and system integrity.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2024-39339

Affected Products

Smartplay Headunits