Cleartext Storage in a File or on Disk
CVE-2018-10622
Summary
Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials for network authentication.
- LOW
- PHYSICAL
- HIGH
- UNCHANGED
- NONE
- NONE
- LOW
- NONE
CWE-313 - Cleartext Storage in a File or on Disk
The application stores sensitive information in cleartext in a file, or on disk.
References
Advisory Timeline
- Published