CVE-2026-2540Disclosure

LOWCVSS 8.4 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The Micca KE700 system contains flawed resynchronization logic and is vulnerable to replay attacks. This attack requires sending two previously captured codes in a specific sequence. As a result, the system can be forced to accept previously used (stale) rolling codes and execute a command. Successful exploitation allows an attacker to clone the alarm key. This grants the attacker unauthorized access to the vehicle to unlock or lock the doors.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-288CWE-294

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-02-15: 3Technical Details · 2026-02-15: 302-15
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-2540 Micca KE700 Replay Attack Enables Unauthorized Vehicle Access https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-2540

    Post summary

    The CVE-2026-2540 vulnerability is a replay attack in the Micca KE700 that allows attackers to gain unauthorized vehicle access.

    0000031
    4.0K followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Disclosure

    🚨 HIGH severity: CVE-2026-2540 in Micca KE700 car alarms allows replay attacks to clone alarm keys! Attackers can unlock or lock vehicles remotely. Patch status unknown — stay alert! https://radar.offseq.com/threat/cve-2026-2540-cwe-288-authentication-bypass-using--06adb1fa #O... https://t.co/X0uTPese7y

    Post summary

    The tweet announces the discovery of CVE‑2026‑2540, a high‑severity authentication bypass in Micca KE700 car alarms that enables replay attacks to clone keys and remotely lock/unlock vehicles, with no patch or exploit details provided.

    0000043
    265 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-2540 The Micca KE700 system contains flawed resynchronization logic and is vulnerable to replay attacks. This attack requires sending two previously captured codes in a spec… https://www.cve.org/CVERecord?id=CVE-2026-2540

    Post summary

    Micca KE700’s flawed resynchronization logic allows replay attacks by sending two previously captured codes, highlighting a new security flaw.

    00000231
    56.4K followersView on X

Explore more