CVE-2024-0104
MEDIUMDescription
NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain a vulnerability in the LDAP AAA component, where a user can cause improper access. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and escalation of privileges.
Is your site exposed to CVE-2024-0104?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| nvidia | onyx |
| nvidia | mlnx-os |
| nvidia | tq8100-hs2f |
| nvidia | tq8200-hs2f |
| nvidia | mlnx-gw |
| nvidia | mga100-hs2 |
| nvidia | nvda-os_xc |
| nvidia | mtq8400-hs2r |
| nvidia | mlnx-os |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-0104? +
How severe is CVE-2024-0104? +
What products are affected by CVE-2024-0104? +
How do I check if I'm vulnerable to CVE-2024-0104? +
Related Vulnerabilities
mcp-neo4j-cypher is an MCP server for executing Cypher queries against Neo4j databases. In versions prior to 0.6.0, the read_only mode …
Horilla is a free and open source Human Resource Management System (HRMS). In 1.5.0, an insecure direct object reference in …
Horilla is a free and open source Human Resource Management System (HRMS). In 1.5.0, an insecure direct object reference in …
mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, no administrator verification takes …
vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, malicious algorithms can potentially access other algorithms …
A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately …