CVE-2024-22477
EUVD-2024-2002109.07.2024, 23:15
A cross-site scripting vulnerability exists in the admin console OIDC Policy Management Editor. The impact is contained to admin console users only.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pingidentity | pingfederate | 10.3.0 ≤ 𝑥 ≤ 10.3.13 |
| pingidentity | pingfederate | 11.0.0 ≤ 𝑥 ≤ 11.0.9 |
| pingidentity | pingfederate | 11.1.0 ≤ 𝑥 ≤ 11.1.9 |
| pingidentity | pingfederate | 11.2.0 ≤ 𝑥 ≤ 11.2.8 |
| pingidentity | pingfederate | 11.3.0 ≤ 𝑥 ≤ 11.3.4 |
| pingidentity | pingfederate | 12.0.0 |
𝑥
= Vulnerable software versions