CVE-2026-4583PoC

LOWCVSS 1.3 · LOW

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this issue is some unknown functionality of the component Bluetooth Handler. Performing a manipulation results in authentication bypass by capture-replay. The attack must originate from the local network. The attack is considered to have high complexity. The exploitation is known to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-287CWE-294

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-03-23); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-23: 1Mentions · 2026-04-08: 1Mentions · 2026-04-15: 1PoC Mentioned / Linked · 2026-04-08: 1PoC Mentioned / Linked · 2026-04-15: 1Technical Details · 2026-04-08: 1Technical Details · 2026-04-15: 103-2304-0804-15
Signal classification2 categories
PoC
266.7%
Disclosure
133.3%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-03-231
Disclosure1
2026-04-081
PoC1
2026-04-151
PoC1
Full discourse3 posts
  • Dark Web Informer@DarkWebInformer
    PoC

    ‼️ M6Plus Proof of Concept (POC) CVE-2026-4583 (Missing Replay Protection) The M6PLUS Bluetooth protocol lacks cryptographic authentication mechanisms. The only integrity check is a trivial single-byte XOR checksum, which can be easily recalculated by an attacker. This allows any Bluetooth device to inject arbitrary transaction commands without the terminal being able to verify the command's origin or authenticity.

    Post summary

    The post announces a Proof of Concept for CVE-2026-4583, explaining that the M6PLUS Bluetooth protocol’s missing replay protection allows attackers to inject arbitrary commands via a trivial XOR checksum.

    791447732948.6K
    218.4K followersView on X
  • NullSecurityX@NullSecurityX
    PoC

    M6Plus Proof of Concept PoC The M6PLUS Bluetooth protocol lacks cryptographic authentication mechanisms. The only integrity check is a trivial single-byte XOR checksum, which can be easily recalculated by an attacker. CVE-2026-4583 https://t.co/XQ6YvBmG4K

    Post summary

    A proof‑of‑concept for CVE‑2026‑4583 is shared, detailing weak authentication in the M6PLUS Bluetooth protocol, but no active exploitation, patch, or exploit tool is mentioned.

    113055317.0K
    12.1K followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-4583 📊 Severity: 5.0 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-4583 #CVE-2026-4583 #CVE #Medium  #CyberSecurity #InfoSec https://t.co/AHUK7row4V

    Post summary

    The tweet announces CVE‑2026‑4583 with a medium risk level and links to the NVD, but offers no technical or exploit details.

    0000024
    111 followersView on X

Explore more