Description
In Sooma 2GEN brain stimulator, an attacker within Bluetooth range can make unauthenticated changes to brain stimulation
parameters.
Published: 2026-09-16
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Sooma
Sooma sooma Tdcs Home Therapy
Vendors & Products Sooma
Sooma sooma Tdcs Home Therapy
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Description In Sooma 2GEN brain stimulator, an attacker within Bluetooth range can make unauthenticated changes to brain stimulation parameters.
Title Brain stimulation parameters can be modified via Bluetooth in Sooma
Weaknesses CWE-924
References
Metrics cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Sooma Sooma Tdcs Home Therapy
cve-icon MITRE

Status: PUBLISHED

Assigner: NCSC-FI

Published:

Updated: 2026-09-17T19:10:41.232Z

Reserved: 2026-09-03T06:44:36.452Z

Link: CVE-2026-85104

cve-icon Vulnrichment

Updated: 2026-09-17T19:10:38.333Z

cve-icon NVD

Status : Received

Published: 2026-09-16T14:17:11.567

Modified: 2026-09-17T20:18:48.940

Link: CVE-2026-85104

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-18T03:30:02Z

Weaknesses
  • CWE-924

    Improper Enforcement of Message Integrity During Transmission in a Communication Channel