CVE-2022-23726

PingCentral versions prior to listed versions expose Spring Boot actuator endpoints that with administrative authentication return large amounts of sensitive environmental and application information.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:pingidentity:pingcentral:*:*:*:*:*:*:*:*
cpe:2.3:a:pingidentity:pingcentral:*:*:*:*:*:*:*:*

Information

Published : 2022-09-30 08:15

Updated : 2022-10-04 09:33


NVD link : CVE-2022-23726

Mitre link : CVE-2022-23726


JSON object : View

CWE
CWE-732

Incorrect Permission Assignment for Critical Resource

Advertisement

dedicated server usa

Products Affected

pingidentity

  • pingcentral