PT-2025-18686 · Gotenna · Gotenna

Published

2025-05-01

·

Updated

2025-06-20

·

CVE-2025-32886

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions goTenna v1 with application 5.5.3 and firmware 0.25.5
Description A problem was discovered where all packets sent over RF are also sent over UART with USB Shell, allowing someone with local access to gain information about the protocol and intercept sensitive data.
Recommendations For goTenna v1 devices with application 5.5.3 and firmware 0.25.5, consider disabling the USB Shell feature to minimize the risk of exploitation until a patch is available. Restrict local access to the device to prevent unauthorized individuals from intercepting sensitive data.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-32886

Affected Products

Gotenna