CVE-2023-37283
25.10.2023, 18:17
Under a very specific and highly unrecommended configuration, authentication bypass is possible in the PingFederate Identifier First AdapterEnginsight
Vendor | Product | Version |
---|---|---|
pingidentity | pingfederate | 10.3.0 ≤ 𝑥 ≤ 10.3.12 |
pingidentity | pingfederate | 11.1.0 ≤ 𝑥 ≤ 11.1.7 |
pingidentity | pingfederate | 11.2.0 ≤ 𝑥 ≤ 11.2.6 |
pingidentity | pingfederate | 11.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration