CVE-2022-21820
MEDIUM 6.5EPSS 16.5%
NVIDIA DCGM contains a vulnerability in nvhostengine, where a network user can cause detection of error conditions without action, which may lead to limited code execution, some denial of service, escalation of privileges, and limited impacts to both data confidentiality and integrity.
- CVSS v3.1
- 6.3 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L - CVSS v3.1
- 6.3 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L - CVSS v2.0
- 6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P - EPSS
- 16.51% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2022-03-24
- Updated
- 2024-08-03
Proof-of-concept exploits (2)
- http://packetstormsecurity.com/files/167396/NVIDIA-Data-Center-GPU-Manager-Remote-Memory-…
- SimoesCTT/CTT-Enhanced-NVIDIA-Data-Center-GPU-Manager-Exploit