Vulnerability Details CVE-2022-40723
The PingID RADIUS PCV adapter for PingFederate, which supports RADIUS authentication with PingID MFA, is vulnerable to MFA bypass under certain configurations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 4.4%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-40723
-
cpe:2.3:a:pingidentity:pingfederate:11.1.0
-
cpe:2.3:a:pingidentity:pingfederate:11.1.1
-
cpe:2.3:a:pingidentity:pingfederate:11.1.2
-
cpe:2.3:a:pingidentity:pingfederate:11.1.3
-
cpe:2.3:a:pingidentity:pingfederate:11.1.4
-
cpe:2.3:a:pingidentity:pingfederate:11.1.5
-
cpe:2.3:a:pingidentity:pingfederate:11.2.0
-
cpe:2.3:a:pingidentity:pingfederate:11.2.1
-
cpe:2.3:a:pingidentity:pingfederate:11.2.2
-
cpe:2.3:a:pingidentity:pingid_integration_kit:*
-
cpe:2.3:a:pingidentity:radius_pcv:2.10.0
-
cpe:2.3:a:pingidentity:radius_pcv:3.0.0
-
cpe:2.3:a:pingidentity:radius_pcv:3.0.1