VYPR
High severity8.1NVD Advisory· Published Aug 13, 2026

CVE-2026-18164

CVE-2026-18164

Description

An undocumented hard-coded credential, shared by all device units, is authorized to bypass authentication. This allows an attacker within Bluetooth range to arbitrarily manipulate brain stimulation parameters and state.

Affected products

2
  • Cisagov/Csafreferences2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.