Vulnerability Description
Yadea T5 Electric Bicycles (models manufactured in/after 2024) have a weak authentication mechanism in their keyless entry system. The system utilizes the EV1527 fixed-code RF protocol without implementing rolling codes or cryptographic challenge-response mechanisms. This is vulnerable to signal forgery after a local attacker intercepts any legitimate key fob transmission, allowing for complete unauthorized vehicle operation via a replay attack.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/ktauchathuranga/CVE-2025-70994
- https://github.com/ktauchathuranga/ghost-keys
- https://github.com/ktauchathuranga/CVE-2025-70994
FAQ
What is CVE-2025-70994?
CVE-2025-70994 is a vulnerability with a CVSS score of 7.3 (HIGH). Yadea T5 Electric Bicycles (models manufactured in/after 2024) have a weak authentication mechanism in their keyless entry system. The system utilizes the EV1527 fixed-code RF protocol without impleme...
How severe is CVE-2025-70994?
CVE-2025-70994 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-70994?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.