Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6347

Опубликовано: 15 авг. 2024
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

  • Unprotected privileged mode access through UDS session in the Blind Spot Detection Sensor ECU firmware in Nissan Altima (2022) allows attackers to trigger denial-of-service (DoS) by unauthorized access to the ECU's programming session.
  • No preconditions implemented for ECU management functionality through UDS session in the Blind Spot Detection Sensor ECU in Nissan Altima (2022) allows attackers to disrupt normal ECU operations by triggering a control command without authentication.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:nissan-global:blind_spot_detection_sensor_ecu_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:nissan-global:altima:2022:*:*:*:*:*:*:*

EPSS

Процентиль: 18%
0.00057
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-285
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 1 года назад

* Unprotected privileged mode access through UDS session in the Blind Spot Detection Sensor ECU firmware in Nissan Altima (2022) allows attackers to trigger denial-of-service (DoS) by unauthorized access to the ECU's programming session. * No preconditions implemented for ECU management functionality through UDS session in the Blind Spot Detection Sensor ECU in Nissan Altima (2022) allows attackers to disrupt normal ECU operations by triggering a control command without authentication.

EPSS

Процентиль: 18%
0.00057
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-285
NVD-CWE-noinfo