VYPR
High severity7.5NVD Advisory· Published Jul 19, 2022· Updated Jun 17, 2026

CVE-2022-2192

CVE-2022-2192

Description

Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recovery token to elevate privileges via path tampering in the Magic Link page. This issue affects: HYPR Server versions later than 6.10; version 6.15.1 and prior versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:hypr:hypr_server:*:*:*:*:*:*:*:*
    Range: >=6.10,<=6.15.1
  • Hypr/Serverllm-create2 versions
    6.10 - 6.15.1+ 1 more
    • (no CPE)range: 6.10 - 6.15.1
    • (no CPE)range: next of 6.10

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.