CVE-2023-6073
10.11.2023, 08:15
Attacker can perform a Denial of Service attack to crash the ICAS 3 IVI ECU in a Volkswagen ID.3 (and other vehicles of the VW Group with the same hardware) and spoof volume setting commands to irreversibly turn on audio volume to maximum via REST API calls.Enginsight
| Vendor | Product | Version |
|---|---|---|
| volkswagen | id.3_firmware | 𝑥 < 3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration