Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE-2026-47672— epa4all-client: Unauthenticated REST API for Patient Record Writes

CVSS 6.5 · Medium EPSS 0.02% · P4

Possible ATT&CK Techniques 1AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProductVersion RangeStatus
oviva-agepa4all-client<= 1.2.4affected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-47672

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
epa4all-client: Unauthenticated REST API for Patient Record Writes
Source: NVD (National Vulnerability Database)
Vulnerability Description
epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. In 1.2.4 and earlier, any network-reachable caller can write arbitrary documents to any patient's electronic health record accessible by the institution's SMC-B card. In a misconfigured deployment (e.g., following the production Docker example in the README), this is exploitable from the local network without credentials.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Source: NVD (National Vulnerability Database)
Vulnerability Type
关键功能的认证机制缺失
Source: NVD (National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
oviva-agepa4all-client <= 1.2.4 -

II. Public POCs for CVE-2026-47672

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-47672

登录查看更多情报信息。

Vendor Advisories for CVE-2026-47672 (1)

Same Patch Batch · oviva-ag · 2026-05-26 · 4 CVEs total

CVE-2026-455748.1 HIGHepa4all-client: TLS Certificate Validation Disabled in Production
CVE-2026-449008.1 HIGHepa4all-client: VAU Signature bypass
CVE-2026-455757.4 HIGHepa4all-client: Improper Verification of Cryptographic Signature

IV. Related Vulnerabilities

V. Comments for CVE-2026-47672

No comments yet


Leave a comment