The U.S. Cybersecurity and Infrastructure Security Agency and the Food and Drug Administration have issued alerts regarding the presence of hidden functionality on Contec CMS8000 and Epsimed MN120 patient monitors.
The vulnerability, identified as CVE-2025-626, has a CVSS score of 7.7 out of 10. The flaw was reported by CISA along with two other issues.

