VYPR

EC80 Brake ECU

by Bendix

CVEs (3)

  • CVE-2026-67560higAug 25, 2026
    risk 0.49cvss 7.5epss

    The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to crash the ECU. A crafted payload can then be used to remotely execute arbitrary code or inject arbitrary CAN bus traffic. This could cause the loss of the ABS function, steering…

  • CVE-2026-68967medAug 25, 2026
    risk 0.42cvss 6.5epss

    The affected product is vulnerable to an out-of-bounds write, which could allow an attacker to deliver a payload that could establish an arbitrary write primitive, which could crash the ECU.

  • CVE-2026-71396medAug 25, 2026
    risk 0.35cvss 5.4epss

    The affected product uses hard-coded credentials, which could allow an attacker to disable automatic traction control.