← back
CVE-2023-28899

Denial of Service via ECU reset service

CVSS 4.7 MEDIUMEPSS 0.1%CWE-770
By sending a specific reset UDS request via OBDII port of Skoda vehicles, it is possible to cause vehicle engine shutdown and denial of service of other vehicle components even when the vehicle is moving at a high speed. No safety critical functions affected. 
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected products
Škoda · Superb III

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →