CVE-2024-40119

HIGH

Nepstech Wifi Router xpon NTPL-Xpon1GFEVN v.1.0 Firmware V2.0.1 - Cross-Site Request Forgery in Password Change Function

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-40119. PoCs published by baroi-ai.

AI-analyzed exploit summary This repository contains a functional CSRF exploit for CVE-2024-40119, targeting the Nepstech Wifi Router NTPL-XPON1GFEVN v1.0. The PoC includes an HTML form that submits a crafted POST request to change the admin password without user interaction.

Description

Nepstech Wifi Router xpon (terminal) model NTPL-Xpon1GFEVN v.1.0 Firmware V2.0.1 contains a Cross-Site Request Forgery (CSRF) vulnerability in the password change function, which allows remote attackers to change the admin password without the user's consent, leading to a potential account takeover.

Exploits (1)

nomisec WORKING POC
by baroi-ai · poc
https://github.com/baroi-ai/nepstech-xpon-router-CVE-2024-40119

This repository contains a functional CSRF exploit for CVE-2024-40119, targeting the Nepstech Wifi Router NTPL-XPON1GFEVN v1.0. The PoC includes an HTML form that submits a crafted POST request to change the admin password without user interaction.

Classification
Working Poc 95%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Nepstech Wifi Router xpon NTPL-XPON1GFEVN v1.0 (Firmware V2.0.1)
Auth required
Prerequisites: Authenticated user session on the router's web interface
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 8.8
EPSS 0.0050
EPSS Percentile 38.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-352
Status published
Published Jul 17, 2024
Tracked Since Feb 18, 2026