CVE-2020-25826: High severity pingidentity pingid integration for windows login vulnerability
Published Sep 23, 2020
·Updated
PingID Integration for Windows Login before 2.4.2 allows local users to gain privileges by modifying CefSharp.BrowserSubprocess.exe.
Affected Software
1 affected component
pingidentity Pingid Integration For Windows Login<2.4.2
Event History
Sep 23, 2020
CVE Published
via MITRE·04:45 AM
Data Sourced
via MITRE·04:45 AM
Description
Frequently Asked Questions
1
What is CVE-2020-25826?
CVE-2020-25826 is a vulnerability that allows local users to gain privileges by modifying CefSharp.BrowserSubprocess.exe.
2
How does CVE-2020-25826 affect PingID Integration for Windows Login?
CVE-2020-25826 affects PingID Integration for Windows Login version up to but excluding 2.4.2.
3
What is the severity of CVE-2020-25826?
The severity of CVE-2020-25826 is high with a severity value of 7.8.
4
How can I fix CVE-2020-25826?
To fix CVE-2020-25826, update PingID Integration for Windows Login to version 2.4.2 or later.
5
Where can I find more information about CVE-2020-25826?
More information about CVE-2020-25826 can be found at the following references: [reference 1], [reference 2].