CVE-2022-37305
PoC ×4—CVSS 3.1
6.4 medium
EPSS
1%p61
Published
()
Modified
Description
The Remote Keyless Entry (RKE) receiving unit on certain Honda vehicles through 2018 allows remote attackers to perform unlock operations and force a resynchronization after capturing five consecutive valid RKE signals over the radio, aka a RollBack attack. The attacker retains the ability to unlock indefinitely.
- Vendors
- honda
- Products
- honda firmware
- Weakness
- CWE-294
- Vector
- CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.