Science & Tech · Cybersecurity · 2 days ago

Thousands of GPU servers exposed monitoring data, with hundreds vulnerable to crashes

Thousands of GPU servers exposed monitoring data, with hundreds vulnerable to crashes

Researchers found about 2,100 GPU servers exposing Nvidia’s DCGM Exporter monitoring service to the internet.

The servers belonged to nearly 300 organizations, and the exposed data included details about more than 12,000 GPUs.

Some endpoints also exposed a profiling tool that could be overwhelmed by unauthenticated requests, crashing the monitoring service and potentially affecting AI training or inference.

The flaw is tracked as CVE-2026-47483 and was rated high severity by Nvidia.

Nvidia released a fix in version 4.8.2, and operators are advised to upgrade to that version or later.

Researchers also found 12,096 public Node Exporter hosts revealing server and operating-system details that could help attackers map systems.

The exposed services appeared on infrastructure used by several cloud providers, whose teams worked with customers to address exposures.

Monitoring services should be restricted to authorized systems rather than made directly reachable from the public internet.

Sources

Related news