First published: Tue Oct 29 2024(Updated: )
An Open-Redirect vulnerability exists in PingAM where well-crafted requests may cause improper validation of redirect URLs. This could allow an attacker to redirect end-users to malicious sites under their control, simplifying phishing attacks
Credit: responsible-disclosure@pingidentity.com
Affected Software | Affected Version | How to fix |
---|---|---|
ForgeRock Access Management | <=7.0.2 | |
ForgeRock Access Management | >=7.1.0<=7.1.4 | |
ForgeRock Access Management | >=7.2.0<=7.2.2 | |
ForgeRock Access Management | =7.3.0 | |
ForgeRock Access Management | =7.3.1 | |
ForgeRock Access Management | =7.4.0 | |
ForgeRock Access Management | =7.4.1 | |
ForgeRock Access Management | =7.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.