VulnerabilitiesApr 8, 2026
‼️ M6Plus Proof of Concept (POC) CVE-2026-4583 (Missing Replay Protection) The M6PLUS Bluetooth...
M6PLUS Bluetooth protocol lacks replay protection; POC released for CVE-2026-4583.
Summary
A proof-of-concept exploit has been released for CVE-2026-4583, which affects the M6PLUS Bluetooth protocol. The vulnerability stems from missing cryptographic authentication and reliance on a trivial single-byte XOR checksum for integrity verification, allowing attackers to forge or replay messages. The flaw exposes M6PLUS devices to potential unauthorized control and spoofing attacks.
Indicators of Compromise
- cve — CVE-2026-4583
Entities
M6PLUS Bluetooth (product)