PT-2022-23985 · Hyundai+2 · Hyundai+2

Levente Csikor

·

Published

2022-08-24

·

Updated

2022-08-31

·

CVE-2022-37418

CVSS v3.1

6.4

Medium

VectorAV:A/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Nissan, Kia, and Hyundai vehicles (affected versions not specified)
Description The issue allows remote attackers to perform unlock operations and force a resynchronization after capturing two consecutive valid key fob signals over the radio. This enables the attacker to retain the ability to unlock the vehicle indefinitely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-37418

Affected Products

Hyundai
Kia
Nissan