CVE-2026-2541: Micca Auto Electronics Co., Ltd Car Alarm System KE700

Medium severity, CVSS 6.4. EPSS: 0.2% chance of exploitation in the next 30 days.

The Micca KE700 system relies on a 6-bit portion of an identifier for authentication within rolling codes, providing only 64 possible combinations. This low entropy allows an attacker to perform a brute-force attack against one component of the rolling code. Successful exploitation simplify an attacker to predict the next valid rolling code, granting unauthorized access to the vehicle.

Affected products

Published 2026-02-15. Last modified 2026-06-17.