Mellanox OS Vulnerability Could Lead to Escalation of Privileges and Information Disclosure
CVE-2024-0113
8.8HIGH
Key Information:
- Vendor
Nvidia
- Vendor
- CVE Published:
- 12 August 2024
What is CVE-2024-0113?
A vulnerability exists in the web support of NVIDIA Mellanox OS and related products, allowing an attacker to exploit a CGI path traversal through a specifically crafted URI. This vulnerability could lead to unauthorized escalation of privileges and potential information disclosure. Organizations utilizing these products should be aware of this vulnerability to mitigate risks associated with unauthorized access.
Affected Version(s)
Mellanox OS Mellanox OS All versions prior to and including 3.11.4000
Mellanox OS Mellanox OS LTS All versions prior to and including 3.11.2200
Mellanox OS Mellanox OS LTS All versions prior to and including 3.10.4400