← Back

Harman

harman

9 CVEs • 4 products

Products (4)

Click to collapse
Toggle
Hermes
hermes
Amx Firmware
amx_firmware
Amx Mvp5150
amx_mvp5150

CVEs (9)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
2.4 LOW· v3
2.1 LOW· v2
A misconfiguration in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
An authentication bypass in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with physical access to device hardware to obtain system information.
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
2.4 LOW· v3
2.1 LOW· v2
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
An authentication bypass in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with physical access to device hardware to obtain system information.
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
2.4 LOW· v3
2.1 LOW· v2
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
1Harman
1Hermes
Nov 21, 2024
Nov 16, 2020
N/A· v4
4.6 MEDIUM· v3
2.1 LOW· v2
An authentication bypass in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with physical access to device hardware to obtain system information.
1Harman
1Amx Mvp5150 Firmware
Nov 21, 2024
May 15, 2019
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
HARMAN AMX MVP5150 v2.87.13 devices allow remote OS Command Injection.
1Harman
1Amx Firmware
May 6, 2026
Jan 22, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2016-01-20 has a hardcoded password for the 1MB@tMaN account, which makes it easier for remote attackers to obtain access via a (1) SSH or (2) H...Show more
The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2016-01-20 has a hardcoded password for the 1MB@tMaN account, which makes it easier for remote attackers to obtain access via a (1) SSH or (2) HTTP session, a different vulnerability than CVE-2015-8362.Show less
1Harman
1Amx Firmware
May 6, 2026
Jan 22, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2015-10-12 has a hardcoded password for the BlackWidow account, which makes it easier for remote attackers to obtain access via a (1) SSH or (2)...Show more
The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2015-10-12 has a hardcoded password for the BlackWidow account, which makes it easier for remote attackers to obtain access via a (1) SSH or (2) HTTP session, a different vulnerability than CVE-2016-1984.Show less