| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-42340 | CyberArk - CWE-602: Client-Side Enforcement of Server-Side Security | CyberArk | CyberArk Identity Management | High | 8.3 | 2024-08-25 07:12:05 | Deep Dive |
| CVE-2024-42339 | CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor | CyberArk | CyberArk Identity Management | Medium | 4.3 | 2024-08-25 07:08:38 | Deep Dive |
| CVE-2024-42338 | CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor | CyberArk | CyberArk Identity Management | Medium | 4.3 | 2024-08-25 07:08:00 | Deep Dive |
| CVE-2024-42337 | CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor | CyberArk | CyberArk Identity Management | Medium | 4.3 | 2024-08-25 07:03:25 | Deep Dive |
| CVE-2024-20417 | Cisco Identity Services Engine REST API Blind SQL Injection Vulnerabities | Cisco | Cisco Identity Services Engine Software | Medium | 6.5 | 2024-08-21 19:16:43 | Deep Dive |
| CVE-2024-20466 | Cisco Identity Services Engine Sensitive Information Disclosure Vulnerability | Cisco | Cisco Identity Services Engine Software | Medium | 6.5 | 2024-08-21 19:16:37 | Deep Dive |
| CVE-2024-20486 | Cisco Identity Services Engine Cross-Site Request Forgery Vulnerability | Cisco | Cisco Identity Services Engine Software | Medium | 6.5 | 2024-08-21 19:16:29 | Deep Dive |
| CVE-2024-20479 | Cisco Identity Services Engine 安全漏洞 | Cisco | Cisco Identity Services Engine Software | Medium | 4.8 | 2024-08-07 16:43:58 | Deep Dive |
| CVE-2024-20443 | Cisco Identity Services Engine 安全漏洞 | Cisco | Cisco Adaptive Security Appliance (ASA) Software | Medium | 5.4 | 2024-08-07 16:42:05 | Deep Dive |
| CVE-2024-23600 | PingIDM Query Filter Vulnerability | Ping Identity | PingIDM | Low | 2.7 | 2024-08-01 16:55:22 | Deep Dive |
| CVE-2024-20296 | Cisco Identity Services Engine 安全漏洞 | Cisco | Cisco Identity Services Engine Software | Medium | 4.7 | 2024-07-17 16:28:22 | Deep Dive |
| CVE-2024-3232 | Formula Injection Vulnerability | Tenable | Tenable Identity Exposure | High | 7.6 | 2024-07-16 17:02:19 | Deep Dive |
| CVE-2024-21832 | PingFederate REST API Data Store Injection | Ping Identity | PingFederate | Low | 3.5 | 2024-07-09 23:04:55 | Deep Dive |
| CVE-2024-22377 | PingFederate Runtime Node Path Traversal | Ping Identity | PingFederate | Medium | 5.3 | 2024-07-09 23:03:28 | Deep Dive |
| CVE-2024-22477 | PingFederate OIDC Policy Management Editor Cross-Site Scripting | Ping Identity | PingFederate | Low | 1.8 | 2024-07-09 23:01:29 | Deep Dive |
| CVE-2023-40356 | PingOne MFA Integration Kit MFA bypass | Ping Identity | PingOne MFA Integration Kit for PingFederate | - | - | 2024-07-09 15:38:56 | Deep Dive |
| CVE-2023-40702 | PingOne MFA Integration Kit MFA bypass | Ping Identity | PingOne MFA Integration Kit for PingFederate | - | - | 2024-07-09 15:38:47 | Deep Dive |
| CVE-2024-35255 | Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability | Microsoft | Azure Identity Library for .NET | Medium | 5.5 | 2024-06-11 16:59:48 | Deep Dive |
| CVE-2024-23316 | PingAccess HTTP Request Desynchronization Weakness | Ping Identity | PingAccess | 中危 | - | 2024-05-31 19:08:35 | Deep Dive |
| CVE-2024-3317 | SailPoint Identity Security Cloud Improper Access Control | SailPoint | Identity Security Cloud | Medium | 6.5 | 2024-05-15 15:55:07 | Deep Dive |