Lifepoint operates a patient portal product that serves as an access point for healthcare consumers to view medical records and appointment information. The observed vulnerability signal centers on authentication and access-control weaknesses, including authentication bypass via alternate channels and improper authentication mechanisms, which are critical concerns in healthcare-facing applications handling sensitive patient data. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lifepoint over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-1067MEDIUM Navigating to a specific URL with a patient ID number will result in the server generating a PDF of a lab report without authentication and rate limiting. | Apr 11, 2022 | 6.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lifepoint.
Media articles that mention a CVE ID that affects a product developed by Lifepoint — matched by CVE ID, not by vendor name.