CVE-2025-40760

A vulnerability has been identified in Altair Grid Engine (All versions < V2026.0.0). Affected products do not properly handle error messages and discloses sensitive password hash information when processing user authentication requests. This could allow a local attacker to extract password hashes for privileged accounts, which can then be subjected to offline brute-force attacks.
Configurations

No configuration.

History

11 Nov 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-11 21:15

Updated : 2025-11-12 16:19


NVD link : CVE-2025-40760

Mitre link : CVE-2025-40760

CVE.ORG link : CVE-2025-40760


JSON object : View

Products Affected

No product.

CWE
CWE-209

Generation of Error Message Containing Sensitive Information