Medium severity6.6NVD Advisory· Published Apr 30, 2022· Updated Jun 17, 2026
CVE-2021-41993
CVE-2021-41993
Description
A misconfiguration of RSA in PingID Android app prior to 1.19 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass when using PingID Windows Login.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:pingidentity:pingid_windows_login:-:*:*:*:*:*:*:*
- Range: <1.19
- Ping Identity/PingID Mobile Applicationv5Range: unspecified
Patches
Vulnerability mechanics
References
2- docs.pingidentity.com/bundle/pingid/page/zvy1641459415679.htmlnvdPatchRelease NotesVendor Advisory
- www.pingidentity.com/en/resources/downloads/pingid.htmlnvdPatch
News mentions
0No linked articles in our index yet.