PT-2025-47970 · Desktop Alert · Pingalert

Published

2025-11-24

·

Updated

2025-12-05

·

CVE-2025-54338

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Desktop Alert PingAlert versions 6.1.0.11 through 6.1.1.2
Description An Incorrect Access Control issue exists in the Application Server component of the software. This allows an attacker to disclose user hashes.
Recommendations Update to a version later than 6.1.1.2.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-54338

Affected Products

Pingalert