CVE-2022-1521 is a critical vulnerability affecting multiple Illumina genetic analysis devices, including iSeq 100, Local Run Manager, and MiSeq models. The flaw stems from a lack of default authentication and authorization in the Local Run Manager (LRM) software. This allows an unauthenticated attacker to remotely inject, replay, modify, or intercept sensitive data over the network with low attack complexity. While the vulnerability has a CVSS score of 9.1 (Critical) and a high FAUCET Risk Score of 72/100, there is no evidence of active exploitation, and no public exploit code is available. Community discussion and media coverage are minimal, with only one mention and one article identified.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 1.3, <= 3.1CPE matchmatch criteria | cpe:2.3:a:illumina:local_run_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.