Description
NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause missing authentication for a critical function. A successful exploit of this vulnerability might lead to data tampering, denial of service, and information disclosure.
Published: 2026-09-22
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 23 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 22 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Nvidia
Nvidia infrastructure Controller
Vendors & Products Nvidia
Nvidia infrastructure Controller

Tue, 22 Sep 2026 17:00:00 +0000

Type Values Removed Values Added
Title Authentication Bypass in NVIDIA Infrastructure Controller for Linux

Tue, 22 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Description NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause missing authentication for a critical function. A successful exploit of this vulnerability might lead to data tampering, denial of service, and information disclosure.
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H'}


Subscriptions

Nvidia Infrastructure Controller
cve-icon MITRE

Status: PUBLISHED

Assigner: nvidia

Published:

Updated: 2026-09-22T15:07:31.797Z

Reserved: 2026-07-21T17:12:30.491Z

Link: CVE-2026-65114

cve-icon Vulnrichment

Updated: 2026-09-22T14:59:44.079Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-22T15:17:11.640

Modified: 2026-09-22T19:37:36.747

Link: CVE-2026-65114

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-22T19:14:33Z

Weaknesses
  • CWE-306

    Missing Authentication for Critical Function