Tesla Wall Connector Firmware Downgrade Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A vulnerability in the Tesla Wall Connector's firmware upgrade feature allows physically present attackers to execute arbitrary code on the device. The issue arises from the absence of an anti-downgrade mechanism, enabling attackers to exploit this flaw without authentication. This vulnerability can be leveraged in conjunction with others to execute code within the device's context.

Impact

Exploitation of this vulnerability could lead to unauthorized arbitrary code execution on the affected Wall Connector device.

Remediation

Users can update to Tesla Wall Connector Firmware Version 24.44.3 to address this vulnerability.

Added: Jul 30, 2025, 3:12 AM
Updated: Jul 30, 2025, 3:12 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
3.3
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.