Impact
The vulnerability resides in the remote‑access helper workflow of NVIDIA NemoClaw for Linux. An attacker who can interact with the helper could weaken its authentication process, allowing the attacker to execute arbitrary code, read sensitive data, or alter system data. This weakness is classified as CWE‑1390, indicating improper handling of authentication protocols.
Affected Systems
NVIDIA NemoClaw for Linux is affected. No specific version numbers are listed in the advisory.
Risk and Exploitability
The vulnerability has a CVSS score of 8.1, indicating high severity. The EPSS score is not available, so the overall exploitation probability is unclear, but the description implies that the remote‑access helper is reachable over a network interface, so the likely attack vector is remote. The vulnerability is not currently listed in CISA KEV, suggesting no known widespread exploitation yet. Immediate remediation is recommended to mitigate potential code execution, data disclosure, or tampering.
OpenCVE Enrichment