Description

There is a misconfiguration vulnerability inside the Infotainment ECU manufactured by BOSCH. The vulnerability happens during the startup phase of a specific systemd service, and as a result, the following developer features will be activated: the disabled firewall and the launched SSH server. First identified on Nissan Leaf ZE1 manufactured in 2020.

INFO

Published Date :

2026-02-15T10:48:34.125Z

Last Modified :

2026-02-17T17:07:10.877Z

Source :

ASRG
AFFECTED PRODUCTS

The following products are affected by CVE-2025-32063 vulnerability.

Vendors Products
Bosch
  • Infotainment System Ecu

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact