Medtronic Valleylab Exchange Client version 3.4 and below...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated May 22, 2025
Description
Published by the National Vulnerability Database
Nov 8, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
May 22, 2025
Medtronic Valleylab Exchange Client version 3.4 and below, Valleylab FT10 Energy Platform (VLFT10GEN) software version 4.0.0 and below, and Valleylab FX8 Energy Platform (VLFX8GEN) software version 1.1.0 and below use multiple sets of hard-coded credentials. If discovered, they can be used to read files on the device.
References