Code Injection Vulnerability in NVIDIA Apex Python Component
CVE-2025-23295
7.8HIGH
What is CVE-2025-23295?
A vulnerability exists in the Python component of NVIDIA Apex across all platforms that enables malicious users to perform code injection. By supplying specially crafted files, an attacker can exploit this flaw to execute arbitrary code, potentially leading to unauthorized privilege escalation, information leakage, and data manipulation. This risks the confidentiality, integrity, and availability of data within the affected systems.
Affected Version(s)
NVIDIA Apex All All versions before release 25.07