Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-374h-j6g4-9hgp

Опубликовано: 22 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4

Описание

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding responses by sniffing CAN traffic or by pre-calculating the values, which allow to bypass the protection.

First identified on Nissan Leaf ZE1 manufactured in 2020.

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding responses by sniffing CAN traffic or by pre-calculating the values, which allow to bypass the protection.

First identified on Nissan Leaf ZE1 manufactured in 2020.

EPSS

Процентиль: 2%
0.00013
Низкий

4 Medium

CVSS3

Дефекты

CWE-1241

Связанные уязвимости

CVSS3: 4
nvd
17 дней назад

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding responses by sniffing CAN traffic or by pre-calculating the values, which allow to bypass the protection. First identified on Nissan Leaf ZE1 manufactured in 2020.

EPSS

Процентиль: 2%
0.00013
Низкий

4 Medium

CVSS3

Дефекты

CWE-1241