258
VMScore

CVE-2018-10634

Published: 13/08/2018 Updated: 09/10/2019
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 258
Vector: AV:A/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Medtronic MMT 508 MiniMed insulin pump, 522 / MMT - 722 Paradigm REAL-TIME, 523 / MMT - 723 Paradigm Revel, 523K / MMT - 723K Paradigm Revel, and 551 / MMT - 751 MiniMed 530G communications between the pump and wireless accessories are transmitted in cleartext. A sufficiently skilled attacker could capture these transmissions and extract sensitive information, such as device serial numbers.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

medtronic minimed_paradigm_revel_mmt-523k_firmware -

medtronic minimed_paradigm_revel_mmt-723k_firmware -

medtronic minimed_paradigm_revel_mmt-723_firmware -

medtronic minimed_530g_mmt-551_firmware -

medtronic minimed_paradigm_real-time_mmt-522_firmware -

medtronic minimed_paradigm_real-time_mmt-722_firmware -

medtronic minimed_530g_mmt-751_firmware -

medtronic minimed_paradigm_revel_mmt-523_firmware -

medtronic minimed_paradigm_508_insulin_pump_firmware -