Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7v8r-7w65-q578

Опубликовано: 13 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.4

Описание

Use of fixed learning codes, one code to lock the car and the other code to unlock it, in the Key Fob Transmitter in Cyclone Matrix TRF Smart Keyless Entry System, which allows a replay attack.

Research was completed on the 2024 KIA Soluto.  Attack confirmed on other KIA Models in Ecuador.

Use of fixed learning codes, one code to lock the car and the other code to unlock it, in the Key Fob Transmitter in Cyclone Matrix TRF Smart Keyless Entry System, which allows a replay attack.

Research was completed on the 2024 KIA Soluto.  Attack confirmed on other KIA Models in Ecuador.

EPSS

Процентиль: 2%
0.00016
Низкий

9.4 Critical

CVSS4

Дефекты

CWE-294

Связанные уязвимости

nvd
6 дней назад

Use of fixed learning codes, one code to lock the car and the other code to unlock it, in the Key Fob Transmitter in Cyclone Matrix TRF Smart Keyless Entry System, which allows a replay attack. Research was completed on the 2024 KIA Soluto.  Attack confirmed on other KIA Models in Ecuador.

EPSS

Процентиль: 2%
0.00016
Низкий

9.4 Critical

CVSS4

Дефекты

CWE-294