OS Command Injection Vulnerability in NVIDIA Infrastructure Controller for Linux
CVE-2026-65130

8HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
22 September 2026

What is CVE-2026-65130?

The NVIDIA Infrastructure Controller for Linux contains a vulnerability that allows attackers to execute malicious OS commands through improper input validation. This vulnerability can lead to unauthorized code execution, data manipulation, denial of service scenarios, and potential exposure of sensitive information. Users are advised to update their systems promptly to mitigate risks associated with this issue.

Affected Version(s)

Infrastructure Controller Linux 0 to 1.9

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.