CVE-2018-10626
EUVD-2018-269810.08.2018, 18:29
Medtronic MyCareLink Patient Monitor’s update service does not sufficiently verify the authenticity of the data uploaded. An attacker who obtains per-product credentials from the monitor and paired implantable cardiac device information can potentially upload invalid data to the Medtronic CareLink network.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| medtronic | mycarelink_24952_patient_monitor_firmware | - |
| medtronic | mycarelink_24950_patient_monitor_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration