CVE-2022-27948

Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:tesla:model_3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_x_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:tesla:model_3:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_s:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_x:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:56

Type Values Removed Values Added
CVSS v2 : 3.3
v3 : 4.3
v2 : 3.3
v3 : 7.2
References () https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory () https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory
References () https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory () https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory
References () https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory () https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory

03 Jul 2024, 01:38

Type Values Removed Values Added
CWE CWE-862

07 Nov 2023, 03:45

Type Values Removed Values Added
Summary ** DISPUTED ** Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended. Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended

Information

Published : 2022-03-27 13:15

Updated : 2024-11-21 06:56


NVD link : CVE-2022-27948

Mitre link : CVE-2022-27948

CVE.ORG link : CVE-2022-27948


JSON object : View

Products Affected

tesla

  • model_s_firmware
  • model_x
  • model_3
  • model_x_firmware
  • model_3_firmware
  • model_s
CWE
NVD-CWE-noinfo CWE-862

Missing Authorization