CVE-2026-85104: Brain stimulation parameters can be modified via Bluetooth in Sooma
Published Sep 16, 2026
·Updated
In Sooma 2GEN brain stimulator, an attacker within Bluetooth range can make unauthenticated changes to brain stimulation parameters.
Affected Software
1 affected component
Sooma 2GEN brain stimulator
Event History
Sep 16, 2026
CVE Published
via MITRE·01:38 PM
Data Sourced
via MITRE·01:38 PM
DescriptionWeakness
Frequently Asked Questions
1
Who is exposed to this issue?
Users of the Sooma 2GEN brain stimulator are exposed when an attacker is within Bluetooth range of the device.
2
What does an attacker need to exploit it?
The attacker only needs to be within Bluetooth range. The parameter changes can be made without authentication.
3
What could an attacker change?
An attacker can modify brain stimulation parameters on the device.