Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 19 May 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 19 May 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthorized ECU Flashing via Brute-Forced Authentication Key | |
| Weaknesses | CWE-307 CWE-522 |
Tue, 19 May 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In BYD Atto3, an attacker can obtain an authentication key through Brute Force attack, which is permanently available. The authentication key enables flash to the Electronic Parking Break (EPB) and Supplemental Restoration System (SRS) related ECUs. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-19T18:13:43.105Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-61081
Updated: 2026-05-19T18:11:05.124Z
Status : Received
Published: 2026-05-19T18:16:19.767
Modified: 2026-05-19T19:16:45.383
Link: CVE-2025-61081
No data.
OpenCVE Enrichment
Updated: 2026-05-19T18:30:11Z