{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-40465","assignerOrgId":"b48c3b8f-639e-4c16-8725-497bc411dad0","state":"PUBLISHED","assignerShortName":"Nokia","dateReserved":"2026-04-13T11:28:52.517Z","datePublished":"2026-08-31T06:37:19.360Z","dateUpdated":"2026-08-31T15:33:24.299Z"},"containers":{"cna":{"title":"An Open Re-direct Vulnerability in Nokia NSP","descriptions":[{"lang":"en","value":"NSP is vulnerable to an open redirect due to insufficient server-side validation of the URL (or redirect) parameter."}],"affected":[{"vendor":"Nokia","product":"NSP","versions":[{"version":"23.11","status":"affected"},{"version":"24.4","status":"affected"},{"version":"24.8","status":"affected"},{"version":"24.11","status":"affected"},{"version":"25.4","status":"affected"},{"version":"25.8","status":"affected"},{"version":"25.11","status":"affected"},{"version":"NSP 24.11-SP15","status":"unaffected"},{"version":"NSP 25.11-SP5","status":"unaffected"},{"version":"NSP 26.4 and later","status":"unaffected"}]}],"references":[{"url":"https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2026-40465/","name":"Nokia Product Security Advisory"}],"providerMetadata":{"orgId":"b48c3b8f-639e-4c16-8725-497bc411dad0","shortName":"Nokia","dateUpdated":"2026-08-31T06:37:19.360Z"},"x_generator":{"engine":"cveClient/1.0.15"}},"adp":[{"problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-601","lang":"en","description":"CWE-601 URL Redirection to Untrusted Site ('Open Redirect')"}]}],"metrics":[{"cvssV3_1":{"scope":"UNCHANGED","version":"3.1","baseScore":5.3,"attackVector":"NETWORK","baseSeverity":"MEDIUM","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","integrityImpact":"NONE","userInteraction":"REQUIRED","attackComplexity":"HIGH","availabilityImpact":"NONE","privilegesRequired":"NONE","confidentialityImpact":"HIGH"}},{"other":{"type":"ssvc","content":{"timestamp":"2026-08-31T15:32:50.443352Z","id":"CVE-2026-40465","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-08-31T15:33:24.299Z"}}]}}