A misconfiguration of RSA in PingID Android app prior to 1.19 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass when using PingID Windows Login.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Pingid | Pingidentity | * | 1.19 (excluding) | 
| Pingid_windows_login | Pingidentity | - (including) | - (including) |