Exposure monitor

Vulnerabilities

Automotive Vulnerabilities. Hunted worldwide every 24 hours, across 🇺🇸🇨🇳🇯🇵🇰🇷🇹🇼🇩🇪🇫🇷🇨🇭🇦🇹🇳🇱🇧🇪🇵🇱🇨🇦🇱🇺🇪🇺. Stay ahead.

1962advisories found
Clear filters
Results
csaf_ncscnlcritical · 10.0

ncsc-2026-0282

This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically Siemens products like SIMATIC, RUGGEDCOM, and Solid Edge used in production environments. An attacker with access to the production network could exploit these flaws to execute malicious code with admin rights, manipulate data, bypass security controls, or cause system outages, with the highest risk being remote code execution that could disrupt vehicle manufacturing operations. Siemens has released security updates and mitigation measures, and while the attack requires access to the production environment, the potential for high damage makes patching a priority.

csaf_siemenscritical · 10.0

ssa-834709

This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically the SIMATIC IoT2050 Advanced edge device running Node-RED. An unauthenticated remote attacker could exploit the missing authentication on the Node-RED HTTP interface to create malicious flows and execute arbitrary code with maximum privileges on the underlying server. Siemens has released a software update to fix this critical issue, and immediate patching is strongly recommended to prevent potential disruption or sabotage of manufacturing operations.

nvdcritical · 10.0

cve-2026-8984

This vulnerability affects EV charging infrastructure including wallboxes, DC fast chargers, and charging station management systems. An unauthenticated attacker on the network can send a crafted request to TCP port 9002 on the Autel MaxiCharger Single, causing the device to download and execute malicious files with full root privileges. This is a critical severity issue that could allow an attacker to fully compromise the charger, potentially disrupting charging operations or using the device as a foothold for broader network attacks.

fkie_nvdcritical · 10.0

cve-2026-8982

This vulnerability affects EV charging infrastructure including wallboxes, DC fast chargers, and charging station management systems. Two hidden privileged accounts in Autel Maxi Charger Single firmware allow an attacker who knows the password derivation algorithm to log into the web management interface with full administrative rights. This is a critical security flaw that could let an attacker control charging operations, access sensitive data, or disrupt service.

fkie_nvdcritical · 10.0

cve-2026-8983

This vulnerability affects EV charging infrastructure including wallboxes, DC fast chargers, and charging station management systems. An attacker can exploit a hard-coded authentication token in Autel Maxi Charger Single firmware to bypass authorization checks and access privileged management functions without valid credentials. This is a critical security flaw that could allow unauthorized control over charging operations and potentially compromise the safety and reliability of the charging network.

nvdcritical · 10.0

cve-2026-8985

This vulnerability affects EV charging infrastructure including wallboxes, DC fast chargers, and charging station management systems. An unauthenticated attacker can exploit a command injection flaw in the Autel MaxiCharger Single firmware to execute arbitrary operating system commands on the charger by sending crafted input to a test endpoint on TCP port 9002. This is a critical severity issue that could allow an attacker to take full control of the charging station, potentially disrupting charging operations or using the device as a foothold for broader network attacks.

csaf_siemenscritical · 10.0

ssa-096828

This vulnerability affects the Opcenter X industrial software platform, which is used in automotive manufacturing plants for production management and quality control. An unauthenticated remote attacker could forge authentication tokens to gain full administrative access to the application, potentially disrupting vehicle production lines or stealing manufacturing data. Siemens has released a fix in version V2604, and immediate updating is strongly recommended.

csaf_ncscnlcritical · 10.0

ncsc-2026-0229

This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically Siemens products like CADRA, IAM, Mendix, OpCenter, RUGGEDCOM, SIDIS, and SIMATIC. An attacker with access to the production environment could exploit these flaws to execute remote code, manipulate data, bypass security measures, or cause a denial-of-service, with the overall risk rated as medium likelihood and high potential damage. Siemens has released security updates and mitigations to address these issues.

cvelistv5critical · 9.9

cve-2026-65093

NVIDIA OpenShell for Linux contains a vulnerability that could allow an attacker to escape its sandbox, potentially leading to code execution, privilege escalation, data tampering, and information disclosure. This could be relevant where NVIDIA OpenShell is deployed in automotive systems, though the advisory does not confirm such use. Confirm applicability through the product SBOM or dependency inventory.

csaf_phoenixcontactgmbhcokgcritical · 9.8

vde-2026-027

Phoenix Contact reports that the firmware in its IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices contains multiple vulnerabilities, including authentication bypass, command injection, local file inclusion, and path traversal. An attacker could bypass authentication, run code with high or root privileges on the device, falsify device integrity, and read sensitive data such as password hashes or private keys. These are industrial I/O devices, so this is relevant to industrial and potentially automotive manufacturing environments where such equipment is deployed; confirm applicability through the product SBOM or dependency inventory.

csaf_pepperlfuchssecritical · 9.8

vde-2026-014

Pepperl+Fuchs ICE2-* and ICE3-* devices contain multiple security vulnerabilities that let attackers bypass authentication, run code with high (root) privileges, and read sensitive data such as password hashes and SSH private keys. Some flaws can be exploited remotely without any credentials, and successful exploitation can falsify device integrity or leave malicious code running even after a reboot. Pepperl+Fuchs rates the impact as serious and directs users to install firmware update 1.7.8, minimize network exposure, isolate the devices from corporate networks, and use VPNs for any required remote access.

csaf_carlogavazziautomationcritical · 9.8

vde-2026-028

Carlo Gavazzi YL212 and YN115 devices contain multiple security vulnerabilities that let attackers bypass authentication, run code with high privileges, and read sensitive data such as password hashes and private keys. An unauthenticated remote attacker can upload a malicious IODD file that executes a persistent root-level shell script, while other flaws allow command injection, path traversal, and local file inclusion through various endpoints. The advisory states these issues can falsify device integrity and expose sensitive information, and remediation is to install firmware update 1.7.8.

csaf_ncscnlcritical · 9.8

ncsc-2026-0370

Apple has released updates for iOS and iPadOS that fix multiple security vulnerabilities in core operating system components and subsystem functions such as file handling, memory management, authentication, and web content processing. An attacker could exploit these flaws to gain unauthorized access to user data, read or corrupt kernel memory, escalate privileges, bypass sandbox restrictions, manipulate network traffic, or cause system and application crashes, and some could leak sensitive information such as Wi-Fi passwords, device identifiers, and user locations. The advisory rates the likelihood of exploitation as medium and the potential damage as high. This could be relevant where Apple iOS or iPadOS devices are deployed in automotive systems, for example as in-vehicle infotainment or companion device platforms. Confirm applicability through the product SBOM or dependency inventory.

nvdcritical · 9.8

cve-2026-54334

UEFI Firmware Parser, a tool for parsing BIOS, Intel ME, and UEFI firmware structures, contains a heap out-of-bounds write in its Tiano decompressor prior to version 1.14. An attacker could use crafted Tiano or EFI compressed firmware to corrupt heap memory, crash the parsing process, and potentially execute code depending on build and runtime details. This could be relevant where this parser is deployed in automotive systems; confirm applicability through the product SBOM or dependency inventory.

nvdcritical · 9.8

cve-2026-54333

UEFI Firmware Parser, a tool that parses BIOS, Intel ME, and UEFI firmware structures, contains a stack out-of-bounds write in its Tiano decompressor prior to version 1.14. An attacker can exploit this by supplying a crafted Tiano or EFI compressed firmware bitstream, which corrupts stack memory, reliably crashes the parsing process, and may allow code execution depending on build and runtime details. This could be relevant where this parser is deployed in automotive firmware analysis or embedded-system tooling; confirm applicability through the product SBOM or dependency inventory.

csaf_ncscnlcritical · 9.8

ncsc-2026-0346

Siemens has released updates addressing multiple vulnerabilities across its product lines, including Desigo, SIMATIC, SCALANCE, SINAMICS, Reyrolle, and Siveillance. The flaws could allow an attacker with access to the production environment to cause denial of service, manipulate data, bypass security measures, execute code with various privilege levels, access sensitive data, or escalate privileges, with an overall medium likelihood of exploitation and high potential damage. These products are used in industrial and building automation, which could include automotive manufacturing environments, so confirm applicability through the product SBOM or dependency inventory.

csaf_siemenscritical · 9.8

ssa-142885

Siemens Reyrolle 7SR5 protection relays before version V2.70 contain multiple vulnerabilities, including issues in the Cesanta Mongoose web server that could allow remote attackers to crash the device or read unintended memory, as well as weak session ID generation that could permit authentication bypass and unauthorized access. Additional flaws could allow low-privileged users to escalate to administrative rights, unauthenticated attackers to cause denial-of-service via crashes and reboots, and attackers with physical access to execute arbitrary code or unsigned firmware. Siemens recommends updating to the latest version to address these risks.

cvelistv5critical · 9.8

cve-2026-78012

A stack-based buffer overflow in Pyramid Solutions NetStaX EtherNet/IP Stack prior to v5.6.1 could allow a large Class 3 explicit-message request to exceed the application-side receive buffer, potentially causing memory corruption, a device crash, or a remote attack vector without the originating device receiving an error. This affects multiple Pyramid Solutions EtherNet/IP Adapter and Scanner DLL and Development Kits, with and without CIP Security. This could be relevant where these EtherNet/IP stacks are deployed in automotive or industrial control systems, but the advisory does not confirm automotive use; confirm applicability through the product SBOM or dependency inventory.

csaf_sauteragcritical · 9.8

vde-2026-093

A vulnerability in the firmware update process of SAUTER Building Controllers could allow an unauthenticated remote attacker to execute unauthorized code, potentially gaining full control of the device and affecting building automation functions. The issue is a race condition that can bypass security controls, and fixes are available in firmware updates for affected models. This is directly relevant to automotive contexts only if such building controllers are used in automotive facilities, which is not stated; confirm applicability through the product SBOM or dependency inventory.

csaf_weidmuellerinterfacegmbhcokgcritical · 9.8

vde-2026-083

Weidmueller security routers IE-SR-2TX-WL and IE-SR-2TX-WL-4G have multiple vulnerabilities. An unauthenticated attacker with network access can execute arbitrary shell commands with root privileges by injecting a crafted username into the web management interface's HTTP Basic Authentication header, potentially creating a persistent backdoor. Additionally, on the IE-SR-2TX-WL-4G variants, an attacker who can send SMS messages can disable SMS password authorization by submitting 5 or more invalid passwords, after which any SMS command is executed without a password, potentially causing limited configuration tampering, information leakage, or full loss of availability. Weidmueller has released firmware updates to fix these issues.

cvelistv5critical · 9.8

cve-2026-19685

NetworkManager, a network connection management component, has a vulnerability where the private_user restriction is not applied to the 802-1x.ca-path and phase2-ca-path properties. This allows an unprivileged local user to point a WPA-Enterprise connection profile's CA path at an attacker-controlled directory, bypassing server certificate validation and enabling credential theft via a rogue access point. The advisory lists affected Red Hat Enterprise Linux and OpenShift products, and this could be relevant where NetworkManager is deployed in automotive systems; confirm applicability through the product SBOM or dependency inventory.

csaf_frauschersensortechnikgmbhcritical · 9.8

vde-2026-078

Frauscher Sensortechnik's FDS102 device for railway signaling systems has multiple security flaws that could let attackers execute code, access sensitive railway track data, hijack admin sessions, or create privileged accounts. The issues range from unauthenticated file downloads to session hijacking and privilege escalation, with severity affecting confidentiality, integrity, and availability. Frauscher recommends updating to FDS102 v2.14.0 and restricting network access to authorized personnel.

nvdcritical · 9.8

cve-2026-74901

openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in pqc.py, where AES-GCM decryption failures trigger a fallback to unauthenticated AES-CTR mode. An attacker could modify ciphertext in transit to bypass integrity verification and perform bit-flipping attacks without detection. This could be relevant where openssl_encrypt is deployed in automotive systems; confirm applicability through the product SBOM or dependency inventory.

nvdcritical · 9.8

cve-2026-74900

openssl_encrypt versions before 1.4.0 contain a critical vulnerability in its PQC simulation mode, where a failed key encapsulation mechanism (KEM) decapsulation silently generates a deterministic shared secret using only 16 bytes of the private key and public data. An attacker who obtains those 16 bytes could compute the shared secret and decrypt all ciphertext, as the fallback occurs without any error. This could be relevant where openssl_encrypt is deployed in automotive systems, such as for secure communications or data protection; confirm applicability through the product SBOM or dependency inventory.

nvdcritical · 9.8

cve-2026-74889

openssl_encrypt versions before 1.4.0 use HKDF with no salt and a static info parameter in key normalization, which reduces entropy extraction and makes key derivation predictable. An attacker could exploit this to weaken cryptographic security, particularly against multi-target attacks, when identical inputs are used. This could be relevant where openssl_encrypt is deployed in automotive systems; confirm applicability through the product SBOM or dependency inventory.