VYPR

Model S Firmware

by Tesla

CVEs (7)

  • CVE-2024-6032HigApr 30, 2025
    risk 0.51cvss 7.8epss 0.01

    Tesla Model S Iris Modem ql_atfwd Command Injection Code Execution Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected Tesla Model S vehicles. An attacker must first obtain the ability to execute code on the target system in order to…

  • CVE-2024-6031HigApr 30, 2025
    risk 0.51cvss 7.8epss 0.00

    Tesla Model S oFono AT Command Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows local attackers to execute arbitrary code on affected Tesla Model S vehicles. An attacker must first obtain the ability to execute code on the target modem in order…

  • CVE-2024-13943HigApr 30, 2025
    risk 0.51cvss 7.8epss 0.00

    Tesla Model S Iris Modem QCMAP_ConnectionManager Improper Input Validation Sandbox Escape Vulnerability. This vulnerability allows local attackers to escape the sandbox on affected affected Tesla Model S vehicles. An attacker must first obtain the ability to execute…

  • CVE-2022-27948HigMar 27, 2022
    risk 0.47cvss 7.2epss 0.01

    Certain Tesla vehicles through 2022-03-26 allow attackers to open the charging port via a 315 MHz RF signal containing a fixed sequence of approximately one hundred symbols. NOTE: the vendor's perspective is that the behavior is as intended

  • CVE-2024-6030HigApr 30, 2025
    risk 0.46cvss 7.0epss 0.00

    Tesla Model S oFono Unnecessary Privileges Sandbox Escape Vulnerability. This vulnerability allows local attackers to escape the sandbox on affected Tesla Model S vehicles. An attacker must first obtain the ability to execute code within the sandbox on the target system in order…

  • CVE-2022-3093MedMar 29, 2023
    risk 0.42cvss 6.4epss 0.00

    This vulnerability allows physical attackers to execute arbitrary code on affected Tesla vehicles. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ice_updater update mechanism. The issue results from the lack of proper validation…

  • CVE-2024-6029MedApr 30, 2025
    risk 0.33cvss 5.0epss 0.00

    Tesla Model S Iris Modem Race Condition Firewall Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass the firewall on the Iris modem in affected Tesla Model S vehicles. Authentication is not required to exploit this vulnerability. The specific…