Security Advisory

CVE-2021-42001

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-04-30 21:15:24
Last updated 2024-08-04 03:22:25
Assigner Ping Identity
CVSS score 8.0
State PUBLISHED

Description

PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of exploiting this vulnerability may be able to successfully complete an MFA challenge via OTP.