VYPR

Superb III

by Skoda

CVEs (2)

  • CVE-2023-28899MedJan 12, 2024
    risk 0.31cvss 4.7epss 0.00

    By sending a specific reset UDS request via OBDII port of Skoda vehicles, it is possible to cause vehicle engine shutdown and denial of service of other vehicle components even when the vehicle is moving at a high speed. No safety critical functions affected. 

  • CVE-2023-28896LowDec 1, 2023
    risk 0.21cvss 3.3epss 0.00

    Access to critical Unified Diagnostics Services (UDS) of the Modular Infotainment Platform 3 (MIB3) infotainment is transmitted via Controller Area Network (CAN) bus in a form that can be easily decoded by attackers with physical access to the vehicle. Vulnerability discovered…