CVE-2022-27948

** DISPUTED ** Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:tesla:model_3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_x_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:tesla:model_3:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_s:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_x:-:*:*:*:*:*:*:*

History

03 Jul 2024, 01:38

Type Values Removed Values Added
CWE CWE-862

06 Apr 2022, 03:39

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 3.3
v3 : 4.3
CWE NVD-CWE-noinfo
CPE cpe:2.3:h:tesla:model_x:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_s:-:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_3:-:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_s_firmware:*:*:*:*:*:*:*:*
References (MISC) https://twitter.com/IfNotPike/status/1507852693699661827 - (MISC) https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory
References (MISC) https://twitter.com/IfNotPike/status/1507818836568858631 - (MISC) https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory
References (MISC) https://github.com/pompel123/Tesla-Charging-Port-Opener - (MISC) https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory

29 Mar 2022, 02:15

Type Values Removed Values Added
Summary Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. ** DISPUTED ** Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended.

27 Mar 2022, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-27 13:15

Updated : 2024-08-03 06:15


NVD link : CVE-2022-27948

Mitre link : CVE-2022-27948

CVE.ORG link : CVE-2022-27948


JSON object : View

Products Affected

tesla

  • model_s_firmware
  • model_3
  • model_s
  • model_3_firmware
  • model_x_firmware
  • model_x
CWE
NVD-CWE-noinfo CWE-862

Missing Authorization