CVE-2022-36945
PoC ×4—CVSS 3.1
6.4 medium
EPSS
1%p61
Published
()
Modified
Description
The Remote Keyless Entry (RKE) receiving unit on certain Mazda vehicles through 2020 allows remote attackers to perform unlock operations and force a resynchronization after capturing three consecutive valid key-fob signals over the radio, aka a RollBack attack. The attacker retains the ability to unlock indefinitely.
- Vendors
- mazda
- Products
- mazda firmware
- Weakness
- CWE-294
- Vector
- CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.