Potential Protected Information
 
 

Incorrect User Log On and Patient Sync May Occur With Loss of Connectivity

Issue ID: 49124

Versions Affected

NextGen® Practice Management v.5.7 and v.5.8
NextGen® Ambulatory EHR v.5.7, v.5.7 UD1, and v.5.8

The Issue

NextGen Healthcare has identified an issue where an unexpected loss in connectivity may allow a user to log in to a system as an incorrect user or access a patient chart previously opened by the original user within your practice prior to the loss in connectivity. This may occur when using NextGen Practice Management (NextGen PM), NextGen® Ambulatory EHR, or NextGen® Document Management (formerly NextGen ICS).

Example
 
Example #1
In this example, the user logs in to NextGen PM and creates a new patient or opens an existing patient. The user navigates to the patient’s chart and unexpectedly loses connectivity. The loss in connectivity creates an orphaned active station record. The user logs in to NextGen Ambulatory EHR and sees the patient’s chart that was previously opened in NextGen PM is immediately displayed.

screen1

screen2


Example #2
The user logs into NextGen Document Management and unexpectedly loses connectivity. The loss in connectivity creates an orphaned active station record. From the Application Launcher, the user selects the ICS icon and immediately clicks the EHR or EPM icon. The user does not receive the prompt to enter a user name and password and is immediately logged in to the system.

Example #3
The user logs into NextGen Document Management and unexpectedly loses connectivity. The loss in connectivity creates an orphaned active station record.

Another user at the same workstation selects the ICS icon and immediately clicks the EHR or EPM icon. The user does not receive the prompt to enter a user name and password and is immediately logged in to the system as the previous user at that workstation.

Example #4
The user logs into NextGen Document Management using a remote session and unexpectedly loses connectivity. The loss in connectivity creates an orphaned active station record.

Another user, using a separate remote session which is randomly assigned the same session as the previous user who lost connectivity, selects the ICS icon, and immediately clicks the EHR or EPM icon. The user does not receive the prompt to enter a user name and password and is immediately logged in to the system as the previous user who lost connectivity.

screen3

screen4


Actions Required

Until this issue is fixed, users should navigate to System Administrator > View> Universal Preference > General Options > Delete all active stations records greater than 24 hours old and ensure the Value is set to True.

Users should also navigate to System Administrator > View> Universal Preference > General Options> Use Single Sign On and ensure the Value is set to False to turn off the single sign-on feature in order to eliminate all chances of the error occurring.

Users may also navigate to System Administrator > View> Universal Preference > General Options > Sync all patient records to current app and set the Value to False to turn off this feature.

Status

This issue will be fixed in a future release. 

Clients who are experiencing this issue can link their practice and be kept up to date on the status of this issue on the Client Support Center website (http://csc.nextgen.com). Just navigate to the Known/Fixes Issues tab, select the affected product from the navigation bar and filter by the Issue ID.  

All NewsFlashes can be found in the NewsFlash Archive section under the Known/Fixed Issues tab on the Client Support Center website (http://csc.nextgen.com).

Clients who become aware of any potential critical issues should report them by following the process found here.

Thank you for your continued support.
NextGen Healthcare

 
 
 
 

If you no longer wish to receive NewsFlashes, click on the following link: Unsubscribe from NewsFlashes

NextGen Healthcare 795 Horsham Road, Horsham, PA 19044, 215.657.7010

This email and its attachments, if any, may contain confidential or proprietary information and are intended solely for authorized use by the intended recipient(s) only. Any other use of this email is prohibited. If you have received this email in error, you are hereby notified that any retention, disclosure, copying, forwarding, distribution (in whole or in part and whether electronically, written and/or orally) and/or taking of any action in reliance on this email, its contents and/or any attachments thereto is strictly prohibited. If you received this email in error, please notify the sender by replying to this message and permanently delete this email, and any attachments thereto, from your system immediately.