
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-33229 is an uncontrolled search path element vulnerability in NVIDIA Nsight Monitor, a component of NVIDIA Nsight Visual Studio for Windows. It allows a local attacker to execute arbitrary code with the same privileges as the NVIDIA Nsight Visual Studio Edition Monitor application. The vulnerability affects NVIDIA CUDA Toolkit versions prior to 13.1.0 on Windows. It was published on January 20, 2026, with an initial NVD analysis completed on February 2, 2026. NVIDIA assigned a CVSS v3.1 base score of 7.3 (High) (Feedly, NVIDIA Advisory).
The root cause is classified as CWE-427 (Uncontrolled Search Path Element), meaning the application resolves executable or library paths in an insecure manner that can be influenced by a local attacker. This is consistent with DLL search order hijacking (MITRE ATT&CK T1574.001) or PATH environment variable manipulation (T1574.007), where a malicious binary or library placed in a directory that the application searches before legitimate locations gets loaded and executed. Exploitation requires low privileges and user interaction, limiting the attack surface to local access scenarios (Feedly, NVIDIA Advisory).
Successful exploitation allows an attacker to execute arbitrary code at the privilege level of the NVIDIA Nsight Monitor application. According to NVIDIA, this can lead to escalation of privileges, data tampering, denial of service, and information disclosure — all three CIA triad dimensions are rated High impact. The scope is limited to the local system (unchanged scope), but privilege escalation could enable further lateral movement within a compromised environment (NVIDIA Advisory, Feedly).
cmd.exe, powershell.exe, network tools); unexpected network connections originating from the Nsight Monitor process.NsightMonitor.exe or related processes.NVIDIA has released a patch addressing this vulnerability in CUDA Toolkit version 13.1.0 and later. Users should update to CUDA Toolkit 13.1.0 or newer via the NVIDIA support portal. As interim mitigations, administrators should restrict local user write access to directories in the system PATH, limit the number of users with local access to systems running Nsight Monitor, and monitor for suspicious process activity originating from NVIDIA Nsight components (NVIDIA Advisory, Feedly).
Security news outlets including SecurityOnline.info and GBHackers covered the vulnerability as part of broader reporting on NVIDIA CUDA Toolkit security flaws disclosed in January 2026, characterizing them as high-severity code execution risks (SecurityOnline, GBHackers). Tenable added detection coverage via Nessus plugin 294838 shortly after disclosure (Tenable). No significant researcher commentary or threat actor attribution has been publicly reported.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."