Improper Input Validation of query search results for private field data in PingIDM (Query Filter module) allows for a potentially efficient brute forcing approach leading to information disclosure.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Aug 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Input Validation of query search results for private field data in PingIDM OPENIDM (Query Filter module) allows for a potentially efficient brute forcing approach leading to information disclosure. | Improper Input Validation of query search results for private field data in PingIDM (Query Filter module) allows for a potentially efficient brute forcing approach leading to information disclosure. |
Title | PingIDM OpenIDM Query Filter Vulnerability | PingIDM Query Filter Vulnerability |
Wed, 07 Aug 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: Ping Identity
Published: 2024-08-01T16:55:22.291Z
Updated: 2024-10-31T19:02:23.103Z
Reserved: 2024-02-29T23:52:30.512Z
Link: CVE-2024-23600
Vulnrichment
Updated: 2024-10-31T19:02:23.103Z
NVD
Status : Awaiting Analysis
Published: 2024-08-01T17:16:09.253
Modified: 2024-08-13T17:15:23.107
Link: CVE-2024-23600
Redhat
No data.