# List of CVE’s for Me

I am absolutely a no fan to report CVE’s and wanted to never publish something ever. But one of my good friend convinced me after a heated and controversial debate to do so. Therefore I decided to start logging them on the CVE site here – [https://cveform.mitre.org](https://cveform.mitre.org)

| ***CVE Number*** | ***Description*** | ***What I feel*** |
| --- | --- | --- |
| [CVE-2023-40291](https://nvd.nist.gov/vuln/detail/CVE-2023-40291) | Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an internal project name | Its very trivial |
| [CVE-2023-40292](https://nvd.nist.gov/vuln/detail/CVE-2023-40292) | Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets. | Requires some wireshark stuff |
| [CVE-2023-40293](https://nvd.nist.gov/vuln/detail/CVE-2023-40293) | Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection object. | Needs idea on DBUS and python |
| CVE-2019-25153 | Unassigned yet |  |
