Impact
The vulnerability allows an attacker who can physically reach the device to use exposed hardware recovery pins to initiate the NXP i.MX6 recovery mode without any authentication. Once in recovery mode, the attacker can run code stored in memory, tamper with firmware, or read proprietary firmware and other sensitive information. The weakness is an information disclosure and arbitrary code execution flaw (CWE‑1191, CWE‑1244).
Affected Systems
Autel Maxi Charger Single devices running firmware versions up to and including V1.03.51 are affected.
Risk and Exploitability
The CVSS score of 8.6 indicates a high severity. The EPSS score of less than 1% shows that active exploitation is currently unlikely, and the issue is not listed in CISA KE. Malicious insiders or someone who obtains the device can exploit the flaw. Attackers would need to observe the recovery pins, power the device such that the pins trigger recovery mode, load custom code into memory, and then execute it. Once executed, the attacker can rewrite or exfiltrate firmware and sensitive data, presenting a serious risk to confidentiality and integrity for physical asset owners.
OpenCVE Enrichment