Описание
Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication and encryption of local data at rest.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Одновременно
Одновременно
EPSS
7.1 High
CVSS3
4.9 Medium
CVSS3
1.9 Low
CVSS2
Дефекты
Связанные уязвимости
A vulnerability was discovered in all versions of Medtronic MyCareLink 24950 and 24952 Patient Monitor. The affected products use per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication and encryption of local data at rest.
Уязвимость медицинского оборудования Medtronic MyCareLink Patient Monitor, связанная с хранением паролей в восстанавливаемом формате, позволяющая нарушителю раскрыть защищаемую информацию
EPSS
7.1 High
CVSS3
4.9 Medium
CVSS3
1.9 Low
CVSS2