Lucene search

K
nvd[email protected]NVD:CVE-2023-34733
HistoryJun 16, 2023 - 5:15 p.m.

CVE-2023-34733

2023-06-1617:15:12
CWE-754
web.nvd.nist.gov
1
volkswagen
infotainment
denial of service
usb
vulnerability

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

29.3%

A lack of exception handling in the Volkswagen Discover Media Infotainment System Software Version 0876 allows attackers to cause a Denial of Service (DoS) via supplying crafted media files when connecting a device to the vehicle’s USB plug and play feature.

Affected configurations

Nvd
Node
vwdiscover_media_infotainment_systemMatch0876
VendorProductVersionCPE
vwdiscover_media_infotainment_system0876cpe:2.3:a:vw:discover_media_infotainment_system:0876:*:*:*:*:*:*:*

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

29.3%

Related for NVD:CVE-2023-34733