Ping Identity Desktop是Ping Identity的一个用于身份验证的软件。 PingID Desktop 1.7.3 之前版本存在安全漏洞,该漏洞源于加密库中存在错误配置。攻击者利用此漏洞可能能够通过 OTP 成功完成 MFA 质询。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ping Identity | PingID Desktop | unspecified ~ 1.7.3 | - |
|
| Ping Identity | PingID Desktop | unspecified ~ 1.7.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-41992 | 7.7 HIGH | PingID Windows Login RSA cryptographic weakness with possible offline MFA bypass |
| CVE-2021-41994 | 6.6 MEDIUM | PingID iOS mobile application prior to 1.19 vulnerable to pre-computed dictionary attacks |
| CVE-2021-41993 | 6.6 MEDIUM | PingID Android mobile application prior to 1.19 vulnerable to pre-computed dictionary atta |
No comments yet