CVE-2019-5643: Gatech Computing For Good's Basic Laboratory Information System

Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.

Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.5 and earlier suffers from an instance of CWE-284, "Improper Access Control." As a result, an unauthenticated user may enumerate the user names and facility names in use on a particular installation.

Affected products

  • Gatech Computing For Good's Basic Laboratory Information System: up to and including 3.5

Published 2019-11-06. Last modified 2026-06-17.