Skip to main content

Improper Input Validation

CVE-2023-25533

Severity High
Score 8.3/10

Summary

NVIDIA DGX H100 BMC contains a vulnerability in the web UI, where an attacker may cause improper input validation. A successful exploit of this vulnerability may lead to information disclosure, code execution, and escalation of privileges.

  • LOW
  • ADJACENT_NETWORK
  • HIGH
  • CHANGED
  • NONE
  • HIGH
  • HIGH
  • LOW

CWE-20 - Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

References

Advisory Timeline

  • Published