Authorized drivers can disable remote monitoring

Disclosed by
KLWTTS's avatar
KLWTTS
  • Engagement Tesla
  • Disclosed date over 2 years ago
  • Points 10
  • Priority P3 Bugcrowd's VRT priority rating
  • Status Resolved This vulnerability has been accepted and fixed
Summary by Tesla

Disabling mobile access is now restriced to vehicle owners. Since this issue required an attacker to have been granted access to a vehicle by the owner, it was classified as P3.

Summary by KLWTTS

Tesla had misconfigured vehicle security settings that enabled guests who were shared Mobile Access by an Owner, the ability to use their guest credentials to turn off Mobile Access for all users. This same vulnerability let Guests override the Owner's other available security features like Valet Mode, PIN to Drive, and Glovebox PIN. Tesla addressed the issue by reconfiguring server-side protocol to only accept the Owner's credentials for all of these features.

Activity
  1. Nick’s avatar
    Nick Customer published the disclosure report

    ()

  2. Nick’s avatar
    Nick Customer updated the submission

    ()

  3. Nick’s avatar
    Nick Customer sent a message

    ()

  4. KLWTTS’s avatar
    KLWTTS sent a message

    ()Edited

  5. KLWTTS’s avatar
    KLWTTS requested disclosure

    ()

  6. KLWTTS’s avatar
    KLWTTS sent a message

    ()Edited

  7. Nick’s avatar
    Nick Customer sent a message

    ()

  8. Nick’s avatar
    Nick Customer rewarded KLWTTS $300

    ()

  9. Nick’s avatar
    Nick Customer changed the state to Resolved

    ()

  10. Nick’s avatar
    Nick Customer rewarded KLWTTS 10 points

    ()

  11. Nick’s avatar
    Nick Customer sent a message

    ()

  12. KLWTTS’s avatar
    KLWTTS resolved a blocker for Bugcrowd Operations by responding to comments

    ()

  13. KLWTTS’s avatar
    KLWTTS sent a message

    ()Edited

  14. wilson_bugcrowd’s avatarbugcrowd logo
    wilson_bugcrowd created a blocker on the researcher to respond to comments

    ()

  15. Nick’s avatar
    Nick Customer sent a message

    ()Edited

  16. KLWTTS’s avatar
    KLWTTS sent a message

    ()

  17. KLWTTS’s avatar
    KLWTTS sent a message

    ()

  18. Nick’s avatar
    Nick Customer resolved a blocker for Bugcrowd Operations by providing information on impact

    ()

  19. Nick’s avatar
    Nick Customer sent a message

    ()

  20. Nick’s avatar
    Nick Customer changed the severity to P3

    ()

  21. Nick’s avatar
    Nick Customer changed the state to Triaged

    ()

  22. Nick’s avatar
    Nick Customer cleared the severity

    ()

  23. wilson_bugcrowd’s avatarbugcrowd logo
    wilson_bugcrowd sent a message

    ()

  24. wilson_bugcrowd’s avatarbugcrowd logo
    wilson_bugcrowd created a blocker on Tesla to provide information on impact

    ()

  25. KLWTTS’s avatar
    KLWTTS created the submission

    ()