Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Nps Project Subscribe
Filtered by product Nps
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40494 1 Nps Project 1 Nps 2022-10-13 N/A 9.8 CRITICAL
NPS before v0.26.10 was discovered to contain an authentication bypass vulnerability via constantly generating and sending the Auth key and Timestamp parameters.
CVE-2019-15119 1 Nps Project 1 Nps 2020-08-24 5.8 MEDIUM 5.5 MEDIUM
lib/install/install.go in cnlh nps through 0.23.2 uses 0777 permissions for /usr/local/bin/nps and/or /usr/bin/nps, leading to a file overwrite by a local user.