Home
MEDIUM: 4.1 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
Any version before December 4, 2025
affected
Description
Medtronic CareLink Network allows a local attacker with access to log files on an internal API server to view plaintext passwords from errors logged under certain circumstances. This issue affects CareLink Network: before December 4, 2025.
Problem types
CWE-532 Insertion of Sensitive Information into Log File
Product status
Any version before December 4, 2025
References
www.medtronic.com/...s/carelink-network-vulnerabilities.html