CVE-2025-14346
Unknown Unknown - Not Provided
Bluetooth Authentication Bypass in WHILL Electric Wheelchairs Enables Remote Control

Publication date: 2026-01-05

Last updated on: 2026-01-05

Assigner: ICS-CERT

Description
WHILL Model C2 Electric Wheelchairs and Model F Power Chairs do not enforce authentication for Bluetooth connections. An attacker within range can pair with the device and issue movement commands, override speed restrictions, and manipulate configuration profiles without any credentials or user interaction.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-05
Last Modified
2026-01-05
Generated
2026-06-16
AI Q&A
2026-01-05
EPSS Evaluated
2026-06-15
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
whill model_c2 *
whill model_f *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-306 The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

The vulnerability exists in WHILL Model C2 Electric Wheelchairs and Model F Power Chairs, which do not require authentication for Bluetooth connections. This means an attacker within Bluetooth range can connect to the device without credentials or user interaction and control it by issuing movement commands, overriding speed limits, and changing configuration profiles.

Impact Analysis

This vulnerability can allow an attacker to take unauthorized control of the wheelchair or power chair, potentially causing unsafe movements, overriding safety speed restrictions, and altering device settings. This could lead to physical harm to the user or others, loss of device functionality, and safety risks.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-14346. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart