Back

MEDIUM

Medtronic MyCareLink Patient Monitor Network Credential Weakness

Published Aug 10, 2018

Description

Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication.

Affected products

Remediation

Vendor solution

Medtronic recommends users take additional defensive measures to minimize the risk of exploitation. Specifically, users should:

* Maintain good physical control over the home monitor. * Only use home monitors obtained directly from their healthcare provider or a Medtronic representative to ensure integrity of the system.

Medtronic has released additional patient focused information, at the following location:

https://www.medtronic.com/security

Users should follow CISA's guidance in the following areas:

* Securing the Internet of Things https://www.cisa.gov/news-events/news/securing-internet-things-iot

* Home Network Security https://www.cisa.gov/news-events/news/home-network-security

Metrics

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Medtronic
Published Aug 10, 2018
Updated Jun 22, 2026
Reserved May 1, 2018
NVD
Status Modified
Modified Jun 22, 2026
Red Hat
Severity n/a
Public date n/a