<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T18:30:44.162174+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-241111</id>
    <title>EUVD-2026-241111</title>
    <updated>2026-10-08T18:30:44.168209+00:00</updated>
    <content>EUVD-2026-241111</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-241111"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-25187</id>
    <title>fkie_cve-2020-25187</title>
    <updated>2026-10-08T18:30:44.168247+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Medtronic MyCareLink Smart 25000 is</p>
<p>vulnerable when an authenticated attacker runs a debug command, which can be sent to the patient reader and cause a heap overflow event within the MCL Smart Patient Reader software stack. The heap overflow could allow an attacker to remotely execute code on the MCL Smart Patient Reader, potentially leading to control of the device</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-25187"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4m4f-3m29-78r8</id>
    <title>GHSA-4m4f-3m29-78r8</title>
    <updated>2026-10-08T18:30:44.168283+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs a debug command, which is sent to the reader causing heap overflow in the MCL Smart Reader stack. A heap overflow allows attacker to remotely execute code on the MCL Smart Reader, could lead to control of device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4m4f-3m29-78r8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-25187</id>
    <title>gsd-2020-25187</title>
    <updated>2026-10-08T18:30:44.168302+00:00</updated>
    <content>gsd-2020-25187</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-25187"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsma-20-345-01</id>
    <title>ICSMA-20-345-01 — Medtronic MyCareLink Smart</title>
    <updated>2026-10-08T18:30:44.168313+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected products contain an authentication protocol vulnerability where the method used to authenticate between the MCL Smart Patient Reader and the Medtronic MyCareLink Smart mobile app is vulnerable to bypass. This vulnerability enables an attacker to use another mobile device or malicious application on the patient 's smartphone to authenticate to the patient 's Medtronic Smart Reader, fooling the device into believing it is communicating with the original Medtronic smart phone application when executed within range of Bluetooth communication.CVE-2020-25183 has been assigned to this vulnerability. A CVSS v3 base score of 8.0 has been calculated; the CVSS vector string is (AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). The affected products are vulnerable when an authenticated attacker runs a debug command, which can be sent to the patient reader and cause a heap overflow event within the MCL Smart Patient Reader software stack. The heap overflow could allow an attacker to remotely execute code on the MCL Smart Patient Reader, potentially leading to control of the deviceCVE-2020-25187 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:A/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H). The affected products are vulnerable to a race condition in the MCL Smart Patient Reader software update system, which allows unsigned firmware to be uploaded and executed on the Patient Reader. If exploited, an attacker could remotely execute…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsma-20-345-01"/>
  </entry>
</feed>
