LRM version 2.4 and lower does not implement TLS encryption. A malicious actor can MITM attack sensitive data in-transit, including credentials.

Project Subscriptions

Vendors Products
Illumina Subscribe
Iseq 100 Subscribe
Local Run Manager Subscribe
Miniseq Subscribe
Miseq Dx Subscribe
Nextseq 500 Subscribe
Nextseq 550 Subscribe
Nextseq 550dx Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-24822 LRM version 2.4 and lower does not implement TLS encryption. A malicious actor can MITM attack sensitive data in-transit, including credentials.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-04-16T17:52:17.725Z

Reserved: 2022-04-28T00:00:00.000Z

Link: CVE-2022-1524

cve-icon Vulnrichment

Updated: 2024-08-03T00:10:03.321Z

cve-icon NVD

Status : Modified

Published: 2022-06-24T15:15:09.437

Modified: 2024-11-21T06:40:54.017

Link: CVE-2022-1524

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses