AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-18411

HIGH · CVSS 8.1 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The KARR Security System and SWDS dealer-installed automotive anti-theft systems are vulnerable due to the use of a shared Bluetooth authentication key, enabling attackers within range to issue unauthorized commands. This flaw could lead to unauthorized access to critical vehicle functions, such as unlocking doors and immobilizing the engine. Automotive manufacturers and dealerships implementing these systems should prioritize addressing this vulnerability to protect vehicle security.

CVE
CVE-2026-18411
Severity
HIGH
CVSS
8.1
EPSS
0.34%

Original NVD Description

The KARR Security System and SWDS dealer-installed automotive anti-theft systems use a shared Bluetooth authentication key across affected devices. An attacker within Bluetooth range can leverage this weakness to issue unauthorized commands to the vehicle, potentially allowing unauthorized access to vehicle functions, including door unlocking and engine immobilization.