Back to Database
Status published
Medium
CVE-2024-0104
NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain...
Vulnerability Description
NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain a vulnerability in the LDAP AAA component, where a user can cause improper access. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and escalation of privileges.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-0104
Credits & Attribution
No credits recorded in the NVD database.
More from NVIDIA
View All →CVE-2025-33255
NVIDIA TRT-LLM for any platform contains a vulnerability in MPI...
High
7.5
CVE-2025-33254
NVIDIA Triton Inference Server contains a vulnerability where an attacker...
High
7.5
CVE-2025-33253
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
CVE-2025-33252
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
CVE-2025-33251
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
Affected Vendor
NVIDIA
View all reports →Affected Software
Mellanox OS, ONYX, Skyway, MetroX-3 XC, MetroX-2
Vulnerable Versions:
All versions prior to and including 3.11.2100, All versions prior to and including 3.10.4302, All versions prior to and including 8.2.2100, All versions prior to and including 18.2.2100, All versions prior to and including 3.11.1000
Timeline
Official Publish:
August 8th, 2024
Last Modified:
August 8th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N