High severity8.8NVD Advisory· Published Apr 22, 2016· Updated May 6, 2026
CVE-2016-2354
CVE-2016-2354
Description
The Bluetooth functionality in Lemur Vehicle Monitors BlueDriver before 2016-04-07 supports unrestricted pairing without a PIN, which allows remote attackers to send arbitrary CAN commands by leveraging access to a device inside or adjacent to the vehicle, as demonstrated by a CAN command to disrupt braking or steering.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.kb.cert.org/vuls/id/615456nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.