Yashodhanvivek/Agatsa-EasyTouch-Plus---CVE-2025-56019

Yashodhanvivek/Agatsa-EasyTouch-Plus---CVE-2025-56019

Releases0
This report is for CVE-2025-56019 reserved for Easytouch+product for BLE authentication vulnerability assigned to Discoverer Yashodhan Vivek Mandke. Please download the report pdf in this repositoy

CVE History

CVEPublishedCVSS v3CVSS v2
6.5 MEDIUM

An insecure permission vulnerability exists in the Agasta Easytouch+ version 9.3.97 The device allows unauthorized mobile applications to connect via Bluetooth Low Energy (BLE) without authentication. Once an unauthorized connection is established, legitimate applications are unable to connect, causing a denial of service. The attack requires proximity to the device, making it exploitable from an adjacent network location.