CVE-2026-52866 Details
Description
An attacker within BLE communication range can monopolize the device's only available BLE connection slot, preventing legitimate users or applications from establishing a connection.
A denial-of-service vulnerability has been identified in the Apollo Pharmacy Blood Glucose Monitoring System APG-01 BT, specifically in version 0x0110_v1.1.0. This vulnerability allows an attacker within Bluetooth Low Energy (BLE) communication range to monopolize the device's only available BLE connection slot. As a result, legitimate users or applications are prevented from establishing a connection with the device.
CISA recommends users follow the guidance in the 'Understanding Bluetooth Technology' blog, which is available on the CISA website. Additionally, users are encouraged to contact Apollo Pharmacy directly for more information.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 22, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-862 | Missing Authorization | [email protected] |
Affected Products
No affected product data is available for this CVE.
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 22, 2026 | CVE Modified | CISA-ADP |
| Jun 19, 2026 | New CVE Received | [email protected] |