Security Advisory

CVE-2025-12995

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-04 20:03:00
Last updated 2025-12-08 21:08:48
Assigner Medtronic
State PUBLISHED

Description

Medtronic CareLink Network allows an unauthenticated remote attacker to perform a brute force attack on an API endpoint that could be used to determine a valid password under certain circumstances. This issue affects CareLink Network: before December 4, 2025.