Vulnerability index

Browse CVEs

85 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-6794 A deserialization of untrusted data vulnerability exists in NI VeriStand Waveform Streaming Server that may result in remote code execution. Success… Veristand after 2024 Fix from $2,3002024-07-22 CRITICAL 9.8 CVE-2024-6805 The NI VeriStand Gateway is missing authorization checks when an actor attempts to access File Transfer resources. These missing checks may result i… Veristand after 2024 Fix from $2,3002024-07-22 HIGH 7.8 CVE-2024-6791 A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that may result in remote code execution. Successful exp… Veristand after 2024 Fix from $1,9502024-07-22 HIGH 7.8 CVE-2024-6121 An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834. This affects… Flexlogger after 2024 Fix from $1,9502024-07-22 MEDIUM 5.5 CVE-2024-6122 An incorrect permission in the installation directory for the shared NI SystemLink Server KeyValueDatabase service may result in information disclosu… Systemlink after 2024 Fix from $1,6002024-07-22 MEDIUM 5.5 CVE-2024-6638 An integer overflow vulnerability due to improper input validation when reading TDMS files in LabVIEW may result in an infinite loop. Successful exp… Labview after 2021 Fix from $1,6002024-07-22 HIGH 7.8 CVE-2024-23609 An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a u… Labview after 2020 Fix from $1,9502024-03-11 HIGH 7.8 CVE-2024-23610 An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to … Labview after 2020 Fix from $1,9502024-03-11 HIGH 7.8 CVE-2024-23611 An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to … Labview after 2020 Fix from $1,9502024-03-11 HIGH 7.8 CVE-2024-23612 An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a u… Labview after 2020 Fix from $1,9502024-03-11 HIGH 7.8 CVE-2024-23608 An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to… Labview after 2020 Fix from $1,9502024-03-11 MEDIUM 5.5 CVE-2023-5136 An incorrect permission assignment in the TopoGrafix DataPlugin for GPX could result in information disclosure. An attacker could exploit this vulne… Topografix Data Plugin Mitigation only Fix from $1,6002023-11-08 CRITICAL 9.8 CVE-2023-4601 A stack-based buffer overflow vulnerability exists in NI System Configuration that could result in information disclosure and/or arbitrary code execu… System Configuration 2023+ Fix from $2,3002023-10-18 HIGH 8.8 CVE-2023-4570 An improper access restriction in NI MeasurementLink Python services could allow an attacker on an adjacent network to reach services exposed on loca… Measurementlink 1.1.1+ Fix from $1,9502023-10-05 HIGH 7.8 CVE-2022-42718 Incorrect default permissions in the installation folder for NI LabVIEW Command Line Interface (CLI) may allow an authenticated user to potentially e… Labview Command Line Interface 22.3.1+ Fix from $1,9502022-12-01 HIGH 7.8 CVE-2022-35415 An improper input validation in NI System Configuration Manager before 22.5 may allow a privileged user to potentially enable escalation of privilege… Configuration Manager 22.5.0+ Fix from $1,9502022-09-16 MEDIUM 6.1 CVE-2022-27237 There is a cross-site scripting (XSS) vulnerability in an NI Web Server component installed with several NI products. Depending on the product(s) in … Flexlogger 1.2+ Fix from $1,6002022-04-21 HIGH 7.8 CVE-2021-42563 There is an Unquoted Service Path in NI Service Locator (nisvcloc.exe) in versions prior to 18.0 on Windows. This may allow an authorized local user … Ni Service Locator 18.0.0.49152+ Fix from $1,9502021-11-12 HIGH 7.8 CVE-2021-38304 Improper input validation in the National Instruments NI-PAL driver in versions 20.0.0 and prior may allow a privileged user to potentially enable es… Ni Pal after 20.0.0 Fix from $1,9502021-09-17 HIGH 7.5 CVE-2020-25191 Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that c… Compactrio Firmware 20.5+ Fix from $1,9502020-12-11 HIGH 7.8 CVE-2017-2779 An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW 2016, LabVIEW 2015, and LabV… Labview Patch available Fix from $1,9502017-09-05 HIGH 7.8 CVE-2017-2775 An exploitable memory corruption vulnerability exists in the LvVariantUnflatten functionality in 64-bit versions of LabVIEW before 2015 SP1 f7 Patch … Labview No fix yet Fix from $1,9502017-03-31 HIGH 10.0 CVE-2013-5022 Absolute path traversal vulnerability in the 3D Graph ActiveX control in cw3dgrph.ocx in National Instruments LabWindows/CVI 2012 SP1 and earlier, La… Labview after 2013 Fix from $1,9502013-08-06 HIGH 9.3 CVE-2013-5021 Multiple absolute path traversal vulnerabilities in National Instruments cwui.ocx, as used in National Instruments LabWindows/CVI 2012 SP1 and earlie… Labview after 2013 Fix from $1,9502013-08-06 HIGH 9.3 CVE-2013-5026 An ActiveX control in lookout650.ocx, lookout660.ocx, and lookout670.ocx in National Instruments Lookout 6.5 through 6.7 allows remote attackers to e… Lookout Patch available Fix from $1,9502013-08-06