Tesla kayıtları
tesla üreticisine ait 24 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition3
- CWE-122 Heap-based Buffer Overflow2
- CWE-1284 Improper Validation of Specified Quantity in Input1
- CWE-190 Integer Overflow or Wraparound1
- CWE-20 Improper Input Validation1
- CWE-250 Execution with Unnecessary Privileges1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWEBug bounty kapsamı
Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.
Tüm kayıtlar
24 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2019-9977İstismar yok | The renderer process in the entertainment system on Tesla Model 3 vehicles mishandles JIT compilation, which allows attackers to trigger firtesla · model 3 firmware | Yüksek8,8 | — | %3,0 | 24 Mar 2019 |
35İzleyin | CVE-2020-9306İstismar yok | Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials" issue because Digi ConnectPort X2e uses a .pytesla · solarcity solar monitoring gateway · CWE-522 | Yüksek8,8 | — | %1,2 | 17 Şub 2021 |
35İzleyin | CVE-2023-32156İstismar yok | Tesla Model 3 Gateway Firmware Signature Validation Bypass Vulnerabilitytesla · model 3 firmware · CWE-367 | Yüksek8,8 | — | %0,4 | 2 May 2024 |
35İzleyin | CVE-2025-8320İstismar yok | Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerabilitytesla · wall connector firmware · CWE-1284 | Yüksek8,8 | — | %0,3 | 29 Tem 2025 |
31İzleyin | CVE-2024-6032İstismar yok | Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerabilitytesla · model s firmware · CWE-78 | Yüksek7,8 | — | %0,5 | 30 Nis 2025 |
31İzleyin | CVE-2022-42430İstismar yok | This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.tesla · model 3 firmware · CWE-416 | Yüksek7,8 | — | %0,4 | 29 Mar 2023 |
31İzleyin | CVE-2022-42431İstismar yok | This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.tesla · model 3 firmware · CWE-120 | Yüksek7,8 | — | %0,3 | 29 Mar 2023 |
31İzleyin | CVE-2024-6031İstismar yok | Tesla Model S oFono AT Command Heap-based Buffer Overflow Code Execution Vulnerabilitytesla · model s firmware · CWE-122 | Yüksek7,8 | — | %0,2 | 30 Nis 2025 |
31İzleyin | CVE-2024-13943İstismar yok | Tesla Model S Iris Modem QCMAP_ConnectionManager Improper Input Validation Sandbox Escape Vulnerabilitytesla · model s firmware · CWE-20 | Yüksek7,8 | — | %0,2 | 30 Nis 2025 |
30İzleyin | CVE-2023-32157İstismar yok | Tesla Model 3 bsa_server BIP Heap-based Buffer Overflow Arbitrary Code Execution Vulnerabilitytesla · model 3 firmware · CWE-122 | Yüksek7,5 | — | %0,4 | 2 May 2024 |
30İzleyin | CVE-2025-2082Kavram kanıtı | Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerabilitytesla · model 3 firmware · CWE-190 | Yüksek7,5 | — | %0,4 | 30 Nis 2025 |
28İzleyin | CVE-2016-9337İstismar yok | An issue was discovered in Tesla Motors Model S automobile, all firmware versions before version 7.1 (2.36.31) with web browser functionalittesla · gateway ecu · CWE-77 | Orta6,8 | — | %1,7 | 13 Şub 2017 |
28İzleyin | CVE-2023-32155İstismar yok | Tesla Model 3 bcmdhd Out-Of-Bounds Write Local Privilege Escalation Vulnerabilitytesla · model 3 firmware · CWE-787 | Yüksek7,0 | — | %0,2 | 2 May 2024 |
28İzleyin | CVE-2024-6030İstismar yok | Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerabilitytesla · model s firmware · CWE-250 | Yüksek7,0 | — | %0,2 | 30 Nis 2025 |
27İzleyin | CVE-2020-10558Kavram kanıtı | The driving interface of Tesla Model 3 vehicles in any release before 2020.4.10 allows Denial of Service to occur due to improper process setesla · model 3 web interface | Orta6,5 | — | %2,6 | 20 Mar 2020 |
27İzleyin | CVE-2025-8321İstismar yok | Tesla Wall Connector Firmware Downgrade Vulnerabilitytesla · wall connector firmware · CWE-1328 | Orta6,8 | — | %0,4 | 29 Tem 2025 |
26İzleyin | CVE-2020-15912İstismar yok | Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC Relay.tesla · model 3 firmware | Orta6,5 | — | %1,2 | 23 Tem 2020 |
26İzleyin | CVE-2020-29438İstismar yok | Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification.tesla · model x firmware · CWE-347 | Orta6,5 | — | %0,4 | 30 Kas 2020 |
25İzleyin | CVE-2022-3093İstismar yok | This vulnerability allows physical attackers to execute arbitrary code on affected Tesla vehicles.tesla · model 3 firmware · CWE-367 | Orta6,4 | — | %0,4 | 29 Mar 2023 |
21İzleyin | CVE-2022-37709İstismar yok | Tesla Model 3 V11.0(2022.4.5.1 6b701552d7a6) Tesla mobile app v4.23 is vulnerable to Authentication Bypass by spoofing.tesla · model 3 firmware · CWE-290 | Orta5,3 | — | %0,6 | 16 Eyl 2022 |
20İzleyin | CVE-2024-6029İstismar yok | Tesla Model S Iris Modem Race Condition Firewall Bypass Vulnerabilitytesla · model s firmware · CWE-367 | Orta5,0 | — | %0,2 | 30 Nis 2025 |
18İzleyin | CVE-2020-29439İstismar yok | Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module tesla · model x firmware | Orta4,6 | — | %0,4 | 30 Kas 2020 |
18İzleyin | CVE-2020-29440İstismar yok | Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body controltesla · model x firmware · CWE-295 | Orta4,6 | — | %0,2 | 30 Kas 2020 |
17İzleyin | CVE-2022-27948İstismar yok | Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of atesla · model 3 firmware · CWE-862 | Orta4,3 | — | %1,4 | 27 Mar 2022 |
- CVE-2019-997736İzleyin
The renderer process in the entertainment system on Tesla Model 3 vehicles mishandles JIT compilation, which allows attackers to trigger fir
YüksekCVSS 8,8İstismar yokEPSS %3tesla · model 3 firmware24 Mar 2019
- CVE-2020-930635İzleyin
Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials" issue because Digi ConnectPort X2e uses a .py
YüksekCVSS 8,8İstismar yokEPSS %1tesla · solarcity solar monitoring gateway17 Şub 2021
- CVE-2023-3215635İzleyin
Tesla Model 3 Gateway Firmware Signature Validation Bypass Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0tesla · model 3 firmware2 May 2024
- CVE-2025-832035İzleyin
Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0tesla · wall connector firmware29 Tem 2025
- CVE-2024-603231İzleyin
Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1tesla · model s firmware30 Nis 2025
- CVE-2022-4243031İzleyin
This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.
YüksekCVSS 7,8İstismar yokEPSS %0tesla · model 3 firmware29 Mar 2023
- CVE-2022-4243131İzleyin
This vulnerability allows local attackers to escalate privileges on affected Tesla vehicles.
YüksekCVSS 7,8İstismar yokEPSS %0tesla · model 3 firmware29 Mar 2023
- CVE-2024-603131İzleyin
Tesla Model S oFono AT Command Heap-based Buffer Overflow Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0tesla · model s firmware30 Nis 2025
- CVE-2024-1394331İzleyin
Tesla Model S Iris Modem QCMAP_ConnectionManager Improper Input Validation Sandbox Escape Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0tesla · model s firmware30 Nis 2025
- CVE-2023-3215730İzleyin
Tesla Model 3 bsa_server BIP Heap-based Buffer Overflow Arbitrary Code Execution Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0tesla · model 3 firmware2 May 2024
- CVE-2025-208230İzleyin
Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerability
YüksekCVSS 7,5Kavram kanıtıEPSS %0tesla · model 3 firmware30 Nis 2025
- CVE-2016-933728İzleyin
An issue was discovered in Tesla Motors Model S automobile, all firmware versions before version 7.1 (2.36.31) with web browser functionalit
OrtaCVSS 6,8İstismar yokEPSS %2tesla · gateway ecu13 Şub 2017
- CVE-2023-3215528İzleyin
Tesla Model 3 bcmdhd Out-Of-Bounds Write Local Privilege Escalation Vulnerability
YüksekCVSS 7,0İstismar yokEPSS %0tesla · model 3 firmware2 May 2024
- CVE-2024-603028İzleyin
Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability
YüksekCVSS 7,0İstismar yokEPSS %0tesla · model s firmware30 Nis 2025
- CVE-2020-1055827İzleyin
The driving interface of Tesla Model 3 vehicles in any release before 2020.4.10 allows Denial of Service to occur due to improper process se
OrtaCVSS 6,5Kavram kanıtıEPSS %3tesla · model 3 web interface20 Mar 2020
- CVE-2025-832127İzleyin
Tesla Wall Connector Firmware Downgrade Vulnerability
OrtaCVSS 6,8İstismar yokEPSS %0tesla · wall connector firmware29 Tem 2025
- CVE-2020-1591226İzleyin
Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC Relay.
OrtaCVSS 6,5İstismar yokEPSS %1tesla · model 3 firmware23 Tem 2020
- CVE-2020-2943826İzleyin
Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification.
OrtaCVSS 6,5İstismar yokEPSS %0tesla · model x firmware30 Kas 2020
- CVE-2022-309325İzleyin
This vulnerability allows physical attackers to execute arbitrary code on affected Tesla vehicles.
OrtaCVSS 6,4İstismar yokEPSS %0tesla · model 3 firmware29 Mar 2023
- CVE-2022-3770921İzleyin
Tesla Model 3 V11.0(2022.4.5.1 6b701552d7a6) Tesla mobile app v4.23 is vulnerable to Authentication Bypass by spoofing.
OrtaCVSS 5,3İstismar yokEPSS %1tesla · model 3 firmware16 Eyl 2022
- CVE-2024-602920İzleyin
Tesla Model S Iris Modem Race Condition Firewall Bypass Vulnerability
OrtaCVSS 5,0İstismar yokEPSS %0tesla · model s firmware30 Nis 2025
- CVE-2020-2943918İzleyin
Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module
OrtaCVSS 4,6İstismar yokEPSS %0tesla · model x firmware30 Kas 2020
- CVE-2020-2944018İzleyin
Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control
OrtaCVSS 4,6İstismar yokEPSS %0tesla · model x firmware30 Kas 2020
- CVE-2022-2794817İzleyin
Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of a
OrtaCVSS 4,3İstismar yokEPSS %1tesla · model 3 firmware27 Mar 2022