Ping Identity iOS App是Ping Identity的一个用于身份验证的手机应用。 Ping Identity iOS App 1.19 之前版本存在安全漏洞,该漏洞源于错误配置 RSA 容易受到预计算字典攻击,从而导致在使用 PingID Windows 登录时绕过离线 MFA。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ping Identity | PingID Mobile Application | unspecified ~ 1.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-42001 | 8.0 HIGH | PingID Desktop encryption libraries misconfiguration can lead to sensitive data exposure |
| CVE-2021-41992 | 7.7 HIGH | PingID Windows Login RSA cryptographic weakness with possible offline MFA bypass |
| CVE-2021-41993 | 6.6 MEDIUM | PingID Android mobile application prior to 1.19 vulnerable to pre-computed dictionary atta |
No comments yet