CVE-2025-46018

CSC Pay Mobile App 2.19.4 (fixed in version 2.20.0) contains a vulnerability allowing users to bypass payment authorization by disabling Bluetooth at a specific point during a transaction. This could result in unauthorized use of laundry services and potential financial loss.
CVSS

No CVSS.

Configurations

No configuration.

History

01 Aug 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-01 14:15

Updated : 2025-08-04 15:06


NVD link : CVE-2025-46018

Mitre link : CVE-2025-46018


JSON object : View

Products Affected

No product.

CWE

No CWE.