CVE-2024-6638
- EPSS 0.07%
- Veröffentlicht 22.07.2024 20:15:04
- Zuletzt bearbeitet 06.03.2025 14:24:40
An integer overflow vulnerability due to improper input validation when reading TDMS files in LabVIEW may result in an infinite loop. Successful exploitation requires an attacker to provide a user with a specially crafted TDMS file. This vulnerabil...
CVE-2024-23612
- EPSS 0.39%
- Veröffentlicht 11.03.2024 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:58:00
An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior versions.
CVE-2024-23611
- EPSS 1.07%
- Veröffentlicht 11.03.2024 16:15:08
- Zuletzt bearbeitet 27.02.2025 17:48:34
An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior vers...
CVE-2024-23610
- EPSS 1.44%
- Veröffentlicht 11.03.2024 16:15:08
- Zuletzt bearbeitet 27.02.2025 17:48:34
An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior vers...
CVE-2024-23609
- EPSS 0.39%
- Veröffentlicht 11.03.2024 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:57:59
An improper error handling vulnerability in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior versions.
CVE-2024-23608
- EPSS 1.44%
- Veröffentlicht 11.03.2024 16:15:07
- Zuletzt bearbeitet 21.11.2024 08:57:59
An out of bounds write due to a missing bounds check in LabVIEW may result in remote code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior ve...
CVE-2022-27237
- EPSS 0.3%
- Veröffentlicht 21.04.2022 05:15:06
- Zuletzt bearbeitet 21.11.2024 06:55:28
There is a cross-site scripting (XSS) vulnerability in an NI Web Server component installed with several NI products. Depending on the product(s) in use, remediation guidance includes: install SystemLink version 2021 R3 or later, install FlexLogger 2...
CVE-2017-2779
- EPSS 0.49%
- Veröffentlicht 05.09.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW 2016, LabVIEW 2015, and LabVIEW 2014. A specially crafted Virtual Instrument (VI) file can cause an attacker controlled looping c...
CVE-2017-2775
- EPSS 0.64%
- Veröffentlicht 31.03.2017 18:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
An exploitable memory corruption vulnerability exists in the LvVariantUnflatten functionality in 64-bit versions of LabVIEW before 2015 SP1 f7 Patch and 2016 before f2 Patch. A specially crafted VI file can cause a user controlled value to be used as...
CVE-2013-5021
- EPSS 0.74%
- Veröffentlicht 06.08.2013 20:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple absolute path traversal vulnerabilities in National Instruments cwui.ocx, as used in National Instruments LabWindows/CVI 2012 SP1 and earlier, National Instruments LabVIEW 2012 SP1 and earlier, the Data Analysis component in ABB DataManager ...