CVE-2020-28656
16.11.2020, 04:15
The update functionality of the Discover Media infotainment system in Volkswagen Polo 2019 vehicles allows physically proximate attackers to execute arbitrary code because some unsigned parts of a metainfo file are parsed, which can cause attacker-controlled files to be written to the infotainment system and executed as root.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.