CVE-2025-4386
Awaiting Analysis
Awaiting Analysis - Queue
Unauthorized UART Access in Medtronic MyCareLink Patient Monitor
Publication date: 2026-05-07
Last updated on: 2026-05-07
Assigner: Medtronic
Description
Description
Medtronic MyCareLink Patient Monitor has an internal serial interface, which allows an attacker with physical access to access a login prompt via a UART terminal.β
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| medtronic | mycarelink_patient_monitor | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1263 | The product is designed with access restricted to certain information, but it does not sufficiently protect against an unauthorized actor with physical access to these areas. |