CVE-2025-3496: Auma Riester AC1.2

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An unauthenticated remote attacker can cause a buffer overflow which could lead to unexpected behaviour or DoS via Bluetooth or RS-232 interface.

Affected products

  • Auma Riester AC1.2: from 06.00.00, before 06.09.04 (fixed in 06.09.04)
  • Auma Riester Mec 03.01: before 01.02.00 (fixed in 01.02.00)
  • Auma Riester Profox: before 01-01.10.00 (fixed in 01-01.10.00)
  • Auma Riester Sgx/svx: from 03.00.00, before 03.05.01 (fixed in 03.05.01)
  • Auma Riester Tigron: before 01-01.09.00 (fixed in 01-01.09.00)
  • Auma Riester Tigron Sil: before 02-01.01.00 (fixed in 02-01.01.00)

Published 2025-05-12. Last modified 2026-06-17.