Lack of authentication for Very High Frequency Data Link messages allows rogue ground stations to inject CPDLC messages leading to unexpected or misleading clearances and potential pilot confusion. This type of attack can be carried out remotely over radio frequency.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-07 19:17
Updated : 2026-09-08 19:30
NVD link : CVE-2025-71409
Mitre link : CVE-2025-71409
CVE.ORG link : CVE-2025-71409
JSON object : View
Products Affected
No product.
CWE
CWE-306
Missing Authentication for Critical Function
