Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpxw-2hr2-2mv5

Опубликовано: 15 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

The Positron PX360BT SW REV 8 car alarm system is vulnerable to a replay attack due to a failure in implementing rolling code security. The alarm system does not properly rotate or invalidate used codes, allowing repeated reuse of captured transmissions. This exposes users to significant security risks, including vehicle theft and loss of trust in the alarm's anti-cloning claims.

The Positron PX360BT SW REV 8 car alarm system is vulnerable to a replay attack due to a failure in implementing rolling code security. The alarm system does not properly rotate or invalidate used codes, allowing repeated reuse of captured transmissions. This exposes users to significant security risks, including vehicle theft and loss of trust in the alarm's anti-cloning claims.

EPSS

Процентиль: 13%
0.00044
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-294

Связанные уязвимости

CVSS3: 6.8
nvd
5 месяцев назад

The Positron PX360BT SW REV 8 car alarm system is vulnerable to a replay attack due to a failure in implementing rolling code security. The alarm system does not properly rotate or invalidate used codes, allowing repeated reuse of captured transmissions. This exposes users to significant security risks, including vehicle theft and loss of trust in the alarm's anti-cloning claims.

EPSS

Процентиль: 13%
0.00044
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-294