CVE-2026-24166EPSS p2.1%

CVE-2026-24166CVE-2026-24166

Description

NVIDIA UFM Enterprise contains a vulnerability in the session management component, where an attacker could use a hard-coded cryptographic key to extract information. A successful exploit of this vulnerability might lead to information disclosure and escalation of privileges.

Scoring

CVSS 5.1 ()
VectorCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS0.13% probability of exploitation · percentile 2.1% · 2026-10-05T12:00:23Z
Last modified2026-08-28
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.