Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
PingID Desktop encryption libraries misconfiguration can lead to sensitive data exposure
Vulnerability Description
PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of exploiting this vulnerability may be able to successfully complete an MFA challenge via OTP.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
加密问题
Vulnerability Title
Ping Identity Desktop 安全漏洞
Vulnerability Description
Ping Identity Desktop是Ping Identity的一个用于身份验证的软件。 PingID Desktop 1.7.3 之前版本存在安全漏洞,该漏洞源于加密库中存在错误配置。攻击者利用此漏洞可能能够通过 OTP 成功完成 MFA 质询。
CVSS Information
N/A
Vulnerability Type
N/A