Vulnerabilities > Ehang IO > NPS > 0.24.0

DATE CVE VULNERABILITY TITLE RISK
2022-10-06 CVE-2022-40494 Improper Authentication vulnerability in Ehang-Io NPS
NPS before v0.26.10 was discovered to contain an authentication bypass vulnerability via constantly generating and sending the Auth key and Timestamp parameters.
network
low complexity
ehang-io CWE-287
critical
9.8