CVE-2025-41657
Due to an undocumented active bluetooth stack on products delivered within the period 01.01.2024 to 09.05.2025 fingerprinting is possible by an unauthenticated adjacent attacker.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 4.3
- CVSS vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS probability
- 0.18%
- CWE
- CWE-207
- Published
- 2025-06-10
- Last modified
- 2026-03-12
Affected products
- Auma AC1.2
- Auma PROFOX