CVE-2025-24836
Qardio Heart Health IOS and Android Application and QardioARM A100 Uncaught Exception
With a specially crafted Python script, an attacker could send
continuous startMeasurement commands over an unencrypted Bluetooth
connection to the affected device. This would prevent the device from
connecting to a clinician's app to take patient readings and ostensibly
flood it with requests, resulting in a denial-of-service condition.
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
Qardio · Heart Health Android Mobile ApplicationQardio · Heart Health IOS Mobile ApplicationQardio · QardioARMQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →