First published: Wed Sep 23 2020(Updated: )
PingID Integration for Windows Login before 2.4.2 allows local users to gain privileges by modifying CefSharp.BrowserSubprocess.exe.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pingidentity Pingid Integration For Windows Login | <2.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-25826 is a vulnerability that allows local users to gain privileges by modifying CefSharp.BrowserSubprocess.exe.
CVE-2020-25826 affects PingID Integration for Windows Login version up to but excluding 2.4.2.
The severity of CVE-2020-25826 is high with a severity value of 7.8.
To fix CVE-2020-25826, update PingID Integration for Windows Login to version 2.4.2 or later.
More information about CVE-2020-25826 can be found at the following references: [reference 1], [reference 2].