First published: Fri Sep 24 2021(Updated: )
Ping Identity PingAccess before 5.3.3 allows HTTP request smuggling via header manipulation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pingidentity Pingaccess | <5.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31923 is a vulnerability that allows HTTP request smuggling through header manipulation in Ping Identity PingAccess before version 5.3.3.
Ping Identity PingAccess versions before 5.3.3 are affected by CVE-2021-31923.
CVE-2021-31923 has a severity rating of medium.
To fix CVE-2021-31923, update Ping Identity PingAccess to version 5.3.3 or later.
Yes, you can refer to the official documentation at https://docs.pingidentity.com/bundle/pingaccess-53/page/wco1629833104567.html for more information.