Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
LifePoint Informatics released and deployed updated Version LPI 3.5.15 in February of 2022, which mitigated this vulnerability. LifePoint Informatics Patient Portal is a hosted application and users don’t need to take any action.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-24411 | Navigating to a specific URL with a patient ID number will result in the server generating a PDF of a lab report without authentication and rate limiting. |
| Link | Providers |
|---|---|
| https://www.cisa.gov/uscert/ics/advisories/icsma-22-095-01 |
|
Wed, 16 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-16T16:31:04.569Z
Reserved: 2022-03-24T00:00:00.000Z
Link: CVE-2022-1067
Updated: 2024-08-02T23:47:43.331Z
Status : Modified
Published: 2022-04-11T20:15:16.797
Modified: 2024-11-21T06:39:58.037
Link: CVE-2022-1067
No data.
OpenCVE Enrichment
No data.
EUVD