Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2021-42001
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
PingID Desktop encryption libraries misconfiguration can lead to sensitive data exposure
Source: NVD (National Vulnerability Database)
Vulnerability Description
PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of exploiting this vulnerability may be able to successfully complete an MFA challenge via OTP.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
加密问题
Source: NVD (National Vulnerability Database)
Vulnerability Title
Ping Identity Desktop 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Ping Identity Desktop是Ping Identity的一个用于身份验证的软件。 PingID Desktop 1.7.3 之前版本存在安全漏洞,该漏洞源于加密库中存在错误配置。攻击者利用此漏洞可能能够通过 OTP 成功完成 MFA 质询。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Ping IdentityPingID Desktop unspecified ~ 1.7.3 -
Ping IdentityPingID Desktop unspecified ~ 1.7.3 -
II. Public POCs for CVE-2021-42001
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2021-42001
Please Login to view more intelligence information
New Vulnerabilities
V. Comments for CVE-2021-42001

No comments yet


Leave a comment