Skip to main content

Cleartext Storage in a File or on Disk

CVE-2018-10622

Severity Medium
Score 5.2/10

Summary

Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication.

  • LOW
  • PHYSICAL
  • HIGH
  • UNCHANGED
  • NONE
  • NONE
  • LOW
  • NONE

CWE-313 - Cleartext Storage in a File or on Disk

The application stores sensitive information in cleartext in a file, or on disk.

References

Advisory Timeline

  • Published