NVIDIA NVFlare Dashboard是美国英伟达(NVIDIA)公司的一个联邦学习任务管理与监控界面。 NVIDIA NVFlare Dashboard存在安全漏洞,该漏洞源于用户管理和身份验证系统问题,可能导致未经身份验证的攻击者通过用户可控密钥绕过授权,导致权限提升、数据篡改、信息泄露、代码执行和拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-24186 | 8.8 HIGH | NVIDIA FLARE SDK 代码问题漏洞 |
| CVE-2026-24222 | 8.6 HIGH | NVIDIA NeMoClaw 安全漏洞 |
| CVE-2026-24204 | 6.5 MEDIUM | NVIDIA FLARE SDK 输入验证错误漏洞 |
| CVE-2026-24231 | 6.3 MEDIUM | NVIDIA NeMoClaw 代码问题漏洞 |
No comments yet