Description
NSP is vulnerable to a stored XSS due to insufficient validation or encoding of user-controlled input in a workflow application. An authenticated attacker with access to the workflow application could embed harmful code that runs when another user views the content.
Published:
2026-08-31
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 31 Aug 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NSP is vulnerable to a stored XSS due to insufficient validation or encoding of user-controlled input in a workflow application. An authenticated attacker with access to the workflow application could embed harmful code that runs when another user views the content. | |
| Title | A Stored Cross-Site Scripting (XSS) Vulnerability in Nokia NSP | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Nokia
Published:
Updated: 2026-08-31T06:35:32.425Z
Reserved: 2026-04-13T11:28:52.516Z
Link: CVE-2026-40464
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.