Critical severity9.8NVD Advisory· Published Oct 6, 2022· Updated Jun 17, 2026
CVE-2022-40494
CVE-2022-40494
Description
NPS before v0.26.10 was discovered to contain an authentication bypass vulnerability via constantly generating and sending the Auth key and Timestamp parameters.
Affected products
2- NPS/NPSdescription
Patches
Vulnerability mechanics
References
2- blog.carrot2.cn/2022/08/cve-2022-40494.htmlnvdExploitThird Party Advisory
- github.com/1security/Vulnerability/blob/main/web/nps/1.mdnvdBroken Link
News mentions
0No linked articles in our index yet.