Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
9.8
CVE-2021-40329
- EPSS 1.15%
- Veröffentlicht 27.09.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:23:52
The Authentication API in Ping Identity PingFederate before 10.3 mishandles certain aspects of external password management.
6.4
CVE-2014-8489
- EPSS 2.91%
- Veröffentlicht 12.12.2014 15:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
Open redirect vulnerability in startSSO.ping in the SP Endpoints in Ping Identity PingFederate 6.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the TargetResource parameter.