Vulnerabilities > Tesla

DATE CVE VULNERABILITY TITLE RISK
2023-03-29 CVE-2022-3093 Unspecified vulnerability in Tesla products
This vulnerability allows physical attackers to execute arbitrary code on affected Tesla vehicles.
high complexity
tesla
6.4
2023-03-29 CVE-2022-42430 Unspecified vulnerability in Tesla Model 3 Firmware 11.0/2022.16.0.3/20220326
This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.
local
low complexity
tesla
7.8
2023-03-29 CVE-2022-42431 Unspecified vulnerability in Tesla Model 3 Firmware 11.0/2022.16.0.3/20220326
This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.
local
low complexity
tesla
7.8
2022-09-16 CVE-2022-37709 Authentication Bypass by Spoofing vulnerability in Tesla Model 3 Firmware and Tesla
Tesla Model 3 V11.0(2022.4.5.1 6b701552d7a6) Tesla mobile app v4.23 is vulnerable to Authentication Bypass by spoofing.
high complexity
tesla CWE-290
5.3
2022-03-27 CVE-2022-27948 Unspecified vulnerability in Tesla products
Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols.
low complexity
tesla
4.3
2021-02-18 CVE-2020-9306 Insufficiently Protected Credentials vulnerability in Tesla Solarcity Solar Monitoring Gateway 5.46.43
Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials" issue because Digi ConnectPort X2e uses a .pyc file to store the cleartext password for the python user account.
low complexity
tesla CWE-522
8.8
2020-11-30 CVE-2020-29440 Improper Certificate Validation vulnerability in Tesla Model X Firmware
Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control module (BCM).
low complexity
tesla CWE-295
4.6
2020-11-30 CVE-2020-29439 Unspecified vulnerability in Tesla Model X Firmware
Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module (BCM) to initiate a Bluetooth wake-up action.
low complexity
tesla
4.6
2020-11-30 CVE-2020-29438 Improper Verification of Cryptographic Signature vulnerability in Tesla Model X Firmware
Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification.
low complexity
tesla CWE-347
6.5
2020-07-23 CVE-2020-15912 Unspecified vulnerability in Tesla Model 3 Firmware
Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC Relay.
low complexity
tesla
6.5