CVE Feed

    Dashboard / CVE / CVE-2024-0113

    CVE-2024-0113

    NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support, where an attacker can cause a CGI path traversal by a specially crafted URI. A successful exploit of this vulnerability might lead to escalation of privileges and information disclosure.

    Published:Aug 8, 2024
    Last Modified:Dec 26, 2024
    EPS:Aug 9, 2024
    EPSS Score:0.00266
    CVSS Score:7.5

    Affected Products

    Vendor
    Nvidia
    Product
    Mellanox Os Firmware
    Vendor
    Nvidia
    Product
    Metrox-2 Firmware
    Vendor
    Nvidia
    Product
    Metrox-3 Xc Firmware
    Vendor
    Nvidia
    Product
    Mga100-hs2
    Vendor
    Nvidia
    Product
    Mlnx-gw
    Vendor
    Nvidia
    Product
    Mlnx-os
    Vendor
    Nvidia
    Product
    Mtq8400-hs2r
    Vendor
    Nvidia
    Product
    Nvda-os Xc
    Vendor
    Nvidia
    Product
    Onyx
    Vendor
    Nvidia
    Product
    Skyway Firmware
    Vendor
    Nvidia
    Product
    Tq8100-hs2f
    Vendor
    Nvidia
    Product
    Tq8200-hs2f

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High