CVE-2025-4395

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/07/2025
Last modified:
25/07/2025

Description

Medtronic MyCareLink Patient Monitor has a built-in user account with an empty password, which allows an attacker with physical access to log in with no password and access modify system functionality. <br /> <br /> This issue affects MyCareLink Patient Monitor models 24950 and 24952: before June 25, 2025