PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to sensitive data exposure. An attacker capable of exploiting this vulnerability may be able to successfully complete an MFA challenge via OTP.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Pingid_desktop | Pingidentity | * | 1.7.3 (excluding) |