CVE-2021-42001

PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of exploiting this vulnerability may be able to successfully complete an MFA challenge via OTP.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:pingidentity:pingid_desktop:*:*:*:*:*:mac_os_x:*:*
cpe:2.3:a:pingidentity:pingid_desktop:*:*:*:*:*:windows:*:*

Information

Published : 2022-04-30 15:15

Updated : 2022-09-02 20:55


NVD link : CVE-2021-42001

Mitre link : CVE-2021-42001


JSON object : View

CWE
CWE-668

Exposure of Resource to Wrong Sphere

Advertisement

dedicated server usa

Products Affected

pingidentity

  • pingid_desktop