CVE-2026-50034 Details
Description
An attacker within BLE communication range can passively intercept wireless traffic and obtain sensitive health-related information, including glucose measurement values.
A vulnerability exists in the Apollo Pharmacy Blood Glucose Monitoring System model APG-01 BT, specifically in version 0x0110_v1.1.0. This vulnerability allows an attacker within Bluetooth Low Energy (BLE) communication range to passively intercept wireless traffic and access sensitive health-related information, such as glucose measurement values. Additionally, this exploitation could prevent legitimate users from connecting to the device.
CISA recommends users follow the guidance in the Understanding Bluetooth Technology blog. For more information, contact Apollo Pharmacy directly.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 22, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-319 | Cleartext Transmission of Sensitive Information | [email protected] |
Affected Products
No affected product data is available for this CVE.
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 22, 2026 | CVE Modified | CISA-ADP |
| Jun 19, 2026 | New CVE Received | [email protected] |