CVE-2022-27948

** DISPUTED ** Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:tesla:model_3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_x_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:tesla:model_3:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_s:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_x:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:56

Type Values Removed Values Added
References () https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory () https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory
References () https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory () https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory
References () https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory () https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory
CVSS v2 : 3.3
v3 : 4.3
v2 : 3.3
v3 : 7.2

03 Jul 2024, 01:38

Type Values Removed Values Added
CWE CWE-862

06 Apr 2022, 03:39

Type Values Removed Values Added
References (MISC) https://twitter.com/IfNotPike/status/1507852693699661827 - (MISC) https://twitter.com/IfNotPike/status/1507852693699661827 - Exploit, Third Party Advisory
References (MISC) https://twitter.com/IfNotPike/status/1507818836568858631 - (MISC) https://twitter.com/IfNotPike/status/1507818836568858631 - Third Party Advisory
References (MISC) https://github.com/pompel123/Tesla-Charging-Port-Opener - (MISC) https://github.com/pompel123/Tesla-Charging-Port-Opener - Third Party Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:h:tesla:model_x:-:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_s:-:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tesla:model_3:-:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tesla:model_s_firmware:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 3.3
v3 : 4.3

29 Mar 2022, 02:15

Type Values Removed Values Added
Summary Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. ** DISPUTED ** Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended.

27 Mar 2022, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-27 13:15

Updated : 2024-11-21 06:56


NVD link : CVE-2022-27948

Mitre link : CVE-2022-27948

CVE.ORG link : CVE-2022-27948


JSON object : View

Products Affected

tesla

  • model_x_firmware
  • model_s_firmware
  • model_3
  • model_s
  • model_x
  • model_3_firmware
CWE
NVD-CWE-noinfo CWE-862

Missing Authorization