CVE-2025-6029: Kia Aftermarket Generic Smart Keyless Entry System
Critical severity, CVSS 9.4. EPSS: 0.7% chance of exploitation in the next 30 days.
Use of fixed learning codes, one code to lock the car and the other code to unlock it, the Key Fob Transmitter in KIA-branded Aftermarket Generic Smart Keyless Entry System, primarily distributed in Ecuador, which allows a replay attack. Manufacture is unknown at the time of release. CVE Record will be updated once this is clarified.
Affected products
- Kia Aftermarket Generic Smart Keyless Entry System
Published 2025-06-13. Last modified 2026-06-17.