CVE-2025-4394: Medtronic Mycarelink Patient Monitor 24950

Medium severity, CVSS 6.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Medtronic MyCareLink Patient Monitor uses an unencrypted filesystem on internal storage, which allows an attacker with physical access to read and modify files. This issue affects MyCareLink Patient Monitor models 24950 and 24952: before June 25, 2025

Affected products

Published 2025-07-24. Last modified 2026-06-17.