Medtronic identified that the Pelvic Health clinician apps, which are installed on the Smart Programmer mobile device, have a password vulnerability that requires a security update to fix. Not updating could potentially result in unauthorized control of the clinician therapy application, which has greater control over therapy parameters than the patient app. Changes still cannot be made outside of the established therapy parameters of the programmer. For unauthorized access to occur, an individual would need physical access to the Smart Programmer.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-29819 | Medtronic identified that the Pelvic Health clinician apps, which are installed on the Smart Programmer mobile device, have a password vulnerability that requires a security update to fix. Not updating could potentially result in unauthorized control of the clinician therapy application, which has greater control over therapy parameters than the patient app. Changes still cannot be made outside of the established therapy parameters of the programmer. For unauthorized access to occur, an individual would need physical access to the Smart Programmer. |
Fixes
Solution
Current versions of the application has mitigated this vulnerability. Please refer to the Medtronic Security Bulletin for update guidance.
Workaround
No workaround given by the vendor.
References
History
Mon, 10 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Medtronic
Published:
Updated: 2025-03-07T21:34:37.484Z
Reserved: 2023-02-16T17:24:51.595Z
Link: CVE-2023-25931
Updated: 2024-08-02T11:39:05.335Z
Status : Modified
Published: 2023-03-01T19:15:26.047
Modified: 2024-11-21T07:50:26.700
Link: CVE-2023-25931
No data.
OpenCVE Enrichment
No data.
EUVD