PT-2025-31639 · Unknown · Csc Pay Mobile App

Niranjan Gaire

+1

·

Published

2025-08-01

·

Updated

2025-10-14

·

CVE-2025-46018

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions CSC Pay Mobile App versions prior to 2.20.0
Description The CSC Pay Mobile App contains an issue that allows users to bypass payment authorization by disabling Bluetooth during a transaction. This bypass could lead to unauthorized use of laundry services and potential financial loss.
Recommendations Update to version 2.20.0 or later.

Exploit

Fix

Authentication Bypass by Spoofing

Weakness Enumeration

Related Identifiers

CVE-2025-46018

Affected Products

Csc Pay Mobile App