CVE-2023-37283
25.10.2023, 18:17
Under a very specific and highly unrecommended configuration, authentication bypass is possible in the PingFederate Identifier First AdapterEnginsight
| Vendor | Product | Version |
|---|---|---|
| pingidentity | pingfederate | 10.3.0 ≤ 𝑥 ≤ 10.3.12 |
| pingidentity | pingfederate | 11.1.0 ≤ 𝑥 ≤ 11.1.7 |
| pingidentity | pingfederate | 11.2.0 ≤ 𝑥 ≤ 11.2.6 |
| pingidentity | pingfederate | 11.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration