Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-56019

Опубликовано: 02 окт. 2025
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

An insecure permission vulnerability exists in the Agasta Easytouch+ version 9.3.97 The device allows unauthorized mobile applications to connect via Bluetooth Low Energy (BLE) without authentication. Once an unauthorized connection is established, legitimate applications are unable to connect, causing a denial of service. The attack requires proximity to the device, making it exploitable from an adjacent network location.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:agasta:easy_touch_plus_firmware:9.3.97:*:*:*:*:*:*:*
cpe:2.3:h:agasta:easy_touch_plus:-:*:*:*:*:*:*:*

EPSS

Процентиль: 27%
0.00098
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-277

Связанные уязвимости

CVSS3: 6.5
github
4 месяца назад

An insecure permission vulnerability exists in the Agasta Easytouch+ version 9.3.97 The device allows unauthorized mobile applications to connect via Bluetooth Low Energy (BLE) without authentication. Once an unauthorized connection is established, legitimate applications are unable to connect, causing a denial of service. The attack requires proximity to the device, making it exploitable from an adjacent network location.

EPSS

Процентиль: 27%
0.00098
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-277