Skip to content

Latest commit

 

History

History
27 lines (15 loc) · 1015 Bytes

README.md

File metadata and controls

27 lines (15 loc) · 1015 Bytes

tesla mate sensitive data exposure

vendor: https://github.com/adriankumpf/teslamate

download link:https://github.com/adriankumpf/teslamate/releases

Vulnerability trigger parameter:&url

The process of vulnerability discovery is as follows:

Access link:https://fofa.info/ and search: title="teslamate"

image

for example:http://leegt.synology.me:4000/

You can get the information of the vehicle image

If the background uses the default passage

like:http://leegt.synology.me:3000/

username:admin password:admin

Hackers can further access the sensitive information of the vehicle image