CVE-2018-10622
4.9MEDIUMMedtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication and encryption of local data
Published: 8/10/2018Updated: 5/22/2025
Description
Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication and encryption of local data at rest.
AI AnalysisPowered by AI
Affected Products
medtronicmycarelink_24952_patient_monitor_firmware
-
medtronicmycarelink_24952_patient_monitor
-
medtronicmycarelink_24950_patient_monitor_firmware
-
medtronicmycarelink_24950_patient_monitor
-
References
- http://www.securityfocus.com/bid/105042Third Party AdvisoryVDB Entry
- https://global.medtronic.com/xg-en/product-security/security-bulletins/mycarelink-8-7-18.html
- https://ics-cert.us-cert.gov/advisories/ICSMA-18-219-01Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/105042Third Party AdvisoryVDB Entry
- https://ics-cert.us-cert.gov/advisories/ICSMA-18-219-01Third Party AdvisoryUS Government Resource