CVE-2024-1156
Description
Incorrect directory permissions for the shared NI RabbitMQ service may allow a local authenticated user to read RabbitMQ configuration information and potentially enable escalation of privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Incorrect directory permissions on NI RabbitMQ service allow local authenticated users to read configuration and potentially escalate privileges.
Vulnerability
CVE-2024-1156 describes incorrect directory permissions for the shared NI RabbitMQ service. This affects SystemLink Server 2023 Q3 and prior versions, as well as other NI products that install the RabbitMQ service. The vulnerability resides in the installation directories for the shared SystemLink Elixir-based services, specifically the RabbitMQ component. A local authenticated user can exploit these misconfigured permissions to read RabbitMQ configuration information [1].
Exploitation
An attacker must have local authenticated access to the affected system. No special privileges beyond a standard user account are required. The attacker can navigate to the RabbitMQ installation directory (e.g., \National Instruments\Shared\Skyline\RabbitMQ\erl-) and read configuration files due to overly permissive access controls. The advisory does not detail a specific exploitation sequence, but the condition is that the directory permissions allow reading by non-privileged users [1].
Impact
Successful exploitation allows the attacker to read RabbitMQ configuration information. This could include credentials, connection strings, or other sensitive data. The advisory states this may enable escalation of privileges, though the exact privilege level gained is not specified. The impact is primarily information disclosure with potential for further privilege escalation [1].
Mitigation
NI strongly recommends upgrading the affected software to a fixed version. As of the advisory date, updates are available for affected products (refer to the Affected Products section on the advisory page). If upgrading is not possible, a workaround is provided: run a batch script (systemlink-restrict-file-access.bat) as Administrator to restrict permissions on the relevant directories, including the RabbitMQ directory. The script must be executed for each applicable directory. The advisory lists the directories that require this fix [1].
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
3- Range: 0
- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.