Back to Feed
VulnerabilitiesApr 8, 2026

‼️ M6Plus Proof of Concept (POC) CVE-2026-4583 (Missing Replay Protection) The M6PLUS Bluetooth...

M6PLUS Bluetooth protocol lacks replay protection; POC released for CVE-2026-4583.

Summary

A proof-of-concept exploit has been released for CVE-2026-4583, which affects the M6PLUS Bluetooth protocol. The vulnerability stems from missing cryptographic authentication and reliance on a trivial single-byte XOR checksum for integrity verification, allowing attackers to forge or replay messages. The flaw exposes M6PLUS devices to potential unauthorized control and spoofing attacks.

Indicators of Compromise

  • cve — CVE-2026-4583

Entities

M6PLUS Bluetooth (product)