#VU48954 Improper Authentication in Smart Model 25000 Patient Reader - CVE-2020-25183
Published: December 14, 2020
Smart Model 25000 Patient Reader
Medtronic
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to an error in when processing authentication requests. A remote attacker on the local network can use another mobile device or malicious application on the patient’s smartphone to bypass authentication process and gain unauthorized access to the application.