NA

CVE-2023-6073

Published: 10/11/2023 Updated: 18/11/2023
CVSS v3 Base Score: 6.3 | Impact Score: 4.2 | Exploitability Score: 2.1
VMScore: 0

Vulnerability Summary

Attacker can perform a Denial of Service attack to crash the ICAS 3 IVI ECU in a Volkswagen ID.3 (and other vehicles of the VW Group with the same hardware) and spoof volume setting commands to irreversibly turn on audio volume to maximum via REST API calls.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

volkswagen id.3_firmware