Description
EQ-3 Eqiva CC-RT-BLE Bluetooth Smart Radiator Thermostat Firmware up to the latest version 1.46 was discovered to allow unsecured bluetooth connections. This vulnerability allows attackers to gain full access to the device without authentication.
Published: 2026-07-16
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

EQ‑3’s Eqiva CC‑RT‑BLE Bluetooth Smart Radiator Thermostat firmware versions up to 1.46 suffer from a missing authentication check that allows any nearby Bluetooth‑enabled device to establish a connection and issue commands, providing full control of the thermostat. The flaw is a classic example of CWE‑306, an authentication weakness. An attacker could alter temperature settings, read status information, or inject arbitrary commands, potentially leading to unauthorized temperature manipulation and privacy violations.

Affected Systems

EQ‑3’s Eqiva CC‑RT‑BLE Bluetooth Smart Radiator Thermostat, firmware versions up to 1.46.

Risk and Exploitability

The flaw has a CVSS score of 7.1 and an EPSS score of less than 1%. It is not listed in the CISA KEV catalog, indicating no confirmed exploitation yet. Exploitation requires proximity to the device’s Bluetooth radio and no special privileges; the attacker simply initiates a Bluetooth session to send commands. The low EPSS suggests that although the vector is simple, it is not widely exploited in the current threat landscape.

Generated by OpenCVE AI on July 31, 2026 at 02:31 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check the vendor’s website for a firmware update that addresses unauthenticated Bluetooth access and apply it when available.
  • Disable the Bluetooth interface when the thermostat is not in use, or restrict Bluetooth pairing to authorized devices only if support exists.
  • Ensure the thermostat is located away from areas where unauthorized nearby devices could contact it, reducing proximity risk.

Generated by OpenCVE AI on July 31, 2026 at 02:31 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 02 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Eq-3
Eq-3 eqiva Cc-rt-ble
Vendors & Products Eq-3
Eq-3 eqiva Cc-rt-ble

Fri, 31 Jul 2026 03:00:00 +0000

Type Values Removed Values Added
Title Unauthenticated Bluetooth Connection Enables Full Control of EQ-3 Radiator Thermostat

Sat, 25 Jul 2026 06:30:00 +0000

Type Values Removed Values Added
Title Unsecured Bluetooth Connection Enables Full Device Control on EQ‑3 Eqiva Thermostat

Wed, 22 Jul 2026 06:00:00 +0000

Type Values Removed Values Added
Title Unsecured Bluetooth Connection Enables Full Device Control on EQ‑3 Eqiva Thermostat

Fri, 17 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-306
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 16 Jul 2026 21:15:00 +0000

Type Values Removed Values Added
Description EQ-3 Eqiva CC-RT-BLE Bluetooth Smart Radiator Thermostat Firmware up to the latest version 1.46 was discovered to allow unsecured bluetooth connections. This vulnerability allows attackers to gain full access to the device without authentication.
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AC:L/AV:A/A:L/C:N/I:H/PR:N/S:U/UI:N'}


Subscriptions

Eq-3 Eqiva Cc-rt-ble
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-07-17T13:39:24.468Z

Reserved: 2024-05-02T00:00:00.000Z

Link: CVE-2024-34268

cve-icon Vulnrichment

Updated: 2026-07-17T13:39:16.615Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T20:36:18Z

Weaknesses
  • CWE-306

    Missing Authentication for Critical Function