AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-4395

MEDIUM · CVSS 6.8 EPSS 0.27%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-07-24 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.8. See the original NVD description below for full technical details.

CVE
CVE-2025-4395
Severity
MEDIUM
CVSS
6.8
EPSS
0.27%

Original NVD Description

Medtronic MyCareLink Patient Monitor has a built-in user account with an empty password, which allows an attacker with physical access to log in with no password and access modify system functionality. This issue affects MyCareLink Patient Monitor models 24950 and 24952: before June 25, 2025