Vulnerabilities
Vulnerable Software
Tesla:  >> Model S  Security Vulnerabilities
This vulnerability allows physical attackers to execute arbitrary code on affected Tesla vehicles. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ice_updater update mechanism. The issue results from the lack of proper validation of user-supplied firmware. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-17463.
CVSS Score
7.6
EPSS Score
0.001
Published
2023-03-29
Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended
CVSS Score
7.2
EPSS Score
0.001
Published
2022-03-27


Contact Us

Shodan ® - All rights reserved