CVE-2025-54339: Desktopalert Pingalert Application Server

Critical severity, CVSS 10.0. EPSS: 0.3% chance of exploitation in the next 30 days.

An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 exploitable remotely for Escalation of Privileges.

Affected products

  • Desktopalert Pingalert Application Server: from 6.1.0.11, before 6.1.1.4 (fixed in 6.1.1.4)

Published 2025-11-14. Last modified 2026-06-17.