HIGH · 7.2

CVE-2022-27948

Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspec...

Vulnerability Description

Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended

CVSS Score

7.2

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:L
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
TeslaModel 3 Firmware<= 2022-03-26
TeslaModel S Firmware<= 2022-03-26
TeslaModel X Firmware<= 2022-03-26
TeslaModel 3-
TeslaModel S-
TeslaModel X-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-27948?

CVE-2022-27948 is a vulnerability with a CVSS score of 7.2 (HIGH). Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspec...

How severe is CVE-2022-27948?

CVE-2022-27948 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-27948?

Check the references section above for vendor advisories and patch information. Affected products include: Tesla Model 3 Firmware, Tesla Model S Firmware, Tesla Model X Firmware, Tesla Model 3, Tesla Model S.