cbcvebase.

Nvidia Unified Fabric Manager Enterprise Ga vulnerabilities

5 known vulnerabilities affecting nvidia/unified_fabric_manager_enterprise_ga.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-24170P3HIGHCVSS 8.8vAll GA versions prior to 6.24.1-52026-08-25
CVE-2026-24170 [HIGH] CWE-287 CVE-2026-24170: NVIDIA UFM Enterprise contains a vulnerability in the web interface authorization component, where a NVIDIA UFM Enterprise contains a vulnerability in the web interface authorization component, where an authenticated user could cause improper authentication by sending specially crafted HTTP requests. A successful exploit of this vulnerability might lead to code execution and escalation of privileges.
nvd
CVE-2026-24169P3HIGHCVSS 8.0vAll GA versions prior to 6.24.1-52026-08-25
CVE-2026-24169 [HIGH] CWE-77 CVE-2026-24169: NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an authenticated NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an authenticated user with low privileges could inject code by sending a specially crafted API request. A successful exploit of this vulnerability might lead to code execution, escalation of privileges and information disclosure.
nvd
CVE-2026-24168P3MEDIUMCVSS 6.8vAll GA versions prior to 6.24.1-52026-08-25
CVE-2026-24168 [MEDIUM] CWE-77 CVE-2026-24168: NVIDIA UFM Enterprise contains a vulnerability in the IBDiagnet API where an authenticated attacker NVIDIA UFM Enterprise contains a vulnerability in the IBDiagnet API where an authenticated attacker with administrative privileges may cause command injection by sending crafted API requests. A successful exploit of this vulnerability may lead to code execution, escalation of privileges and information disclosure.
nvd
CVE-2026-24167P3MEDIUMCVSS 6.8vAll GA versions prior to 6.24.1-52026-08-25
CVE-2026-24167 [MEDIUM] CWE-77 CVE-2026-24167: NVIDIA UFM Enterprise contains a vulnerability in the user management component, where an authentica NVIDIA UFM Enterprise contains a vulnerability in the user management component, where an authenticated administrator could inject commands by sending a crafted API request. A successful exploit of this vulnerability might lead to code execution, escalation of privileges and information disclosure.
nvd
CVE-2026-24166P4MEDIUMCVSS 5.1vAll GA versions prior to 6.24.1-52026-08-25
CVE-2026-24166 [MEDIUM] CWE-321 CVE-2026-24166: NVIDIA UFM Enterprise contains a vulnerability in the session management component, where an attacke NVIDIA UFM Enterprise contains a vulnerability in the session management component, where an attacker could use a hard-coded cryptographic key to extract information. A successful exploit of this vulnerability might lead to information disclosure and escalation of privileges.
nvd
Nvidia Unified Fabric Manager Enterprise Ga vulnerabilities | cvebase