Vulnerability Database

318,389

Total vulnerabilities in the database

CVE-2025-12357

By manipulating the Signal Level Attenuation Characterization (SLAC) protocol with spoofed measurements, an attacker can stage a man-in-the-middle attack between an electric vehicle and chargers that comply with the ISO 15118-2 part. This vulnerability may be exploitable wirelessly, within close proximity, via electromagnetic induction.

  • Published: Oct 31, 2025
  • Updated: Nov 4, 2025
  • CVE: CVE-2025-12357
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.3
  • AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H

CWEs: