ZeroHour

CVE-2022-23725

CVSS 3.1
5.5 medium
EPSS
<1%p12
Published
()
Modified
Description

PingID Windows Login prior to 2.8 does not properly set permissions on the Windows Registry entries used to store sensitive API keys under some circumstances.

Vendors
pingidentity
Products
pingid integration for windows login
Weakness
CWE-288, CWE-522, CWE-732
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.