CVE-2025-23317

CVE Details

Basic Information

Title CVE-2025-23317
Type cve
Published 2025-08-06T12:35:16.838Z
Modified 2025-08-06T12:35:16.838Z

Product Information

Vendor NVIDIA
Product Triton Inference Server
Version All versions prior to 25.07

CVSS Information

Base Score 9.1 (CRITICAL)
Attack Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

AI Analysis

AI Description A critical vulnerability in NVIDIA Triton Inference Server allows remote attackers to execute arbitrary code via a crafted HTTP request, potentially leading to data breaches or service disruption.
AI Severity Critical
AI Vendor NVIDIA
AI Product Triton Inference Server
AI Version All versions prior to 25.07

Affected Products

  • NVIDIA Triton Inference Server All versions prior to 25.07

Additional Information

CWE List CWE-122
Source nvidia

Description

NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shell by sending a specially crafted HTTP request. A successful exploit of this vulnerability might lead to remote code execution, denial of service, data tampering, or information disclosure.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.