Cleartext Communication Vulnerability in Medtronic Insulin Pumps
CVE-2018-10634
5.3MEDIUM
What is CVE-2018-10634?
The Medtronic MMT 508 MiniMed insulin pumps and select Paradigm models expose sensitive communication between the devices and their wireless accessories by transmitting data in cleartext. This design flaw allows an attacker with the necessary expertise to intercept and analyze these communications to extract confidential information, including device serial numbers, potentially compromising user privacy and security.
Affected Version(s)
MMT β 511 pump Paradigm All versions
MMT β 512 / MMT β 712 Paradigm x12 All versions
MMT β 515 / MMT β 715 Paradigm x15 All versions
