Ping Identity Windows PingId是美国Ping Identity的一款可以为应用程序提供安全保障的软件。 Ping Identity Windows PingId 2.8 之前的版本存在安全漏洞,该漏洞源于IT管理员可能会错误地将管理员特权 PingID API 凭据(例如 PingFederate 通常使用的凭据)部署到 PingID Windows 登录用户端点。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ping Identity | PingID Windows Login | unspecified ~ 2.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-41995 | 7.7 HIGH | PingID Mac Login prior to 1.1 vulnerable to pre-computed dictionary attacks |
| CVE-2022-23725 | 7.7 HIGH | PingID Windows Login prior to 2.8 does not properly set permissions on the Windows Registr |
| CVE-2022-23718 | 7.6 HIGH | PingID Windows Login prior to 2.8 uses known vulnerable components that can lead to remote |
| CVE-2022-23719 | 7.2 HIGH | PingID Windows Login prior to 2.8 does not authenticate communication with a local Java se |
| CVE-2022-23717 | 5.0 MEDIUM | PingID Windows Login prior to 2.8 denial of service condition |
No comments yet