AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-28904

MEDIUM · CVSS 5.2 EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-06-28 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.2. See the original NVD description below for full technical details.

CVE
CVE-2023-28904
Severity
MEDIUM
CVSS
5.2
EPSS
0.30%

Original NVD Description

A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attacker with physical access to the MIB3 ECU to bypass firmware signature verification and run arbitrary code in the infotainment system at boot process.