VYPR
Unrated severityNVD Advisory· Published Jul 22, 2024· Updated Aug 1, 2024

Incorrect Default Directory Permissions for NI SystemLink Redis Service

CVE-2024-6122

Description

An incorrect permission in the installation directory for the shared NI SystemLink Server KeyValueDatabase service may result in information disclosure via local access. This affects NI SystemLink Server 2024 Q1 and prior versions. It also affects NI FlexLogger 2023 Q2 and prior versions which installed this shared service.

Affected products

4
  • Ni/FlexLoggerllm-fuzzy2 versions
    <=2023 Q2+ 1 more
    • (no CPE)range: <=2023 Q2
    • (no CPE)range: 0
  • Ni/SystemLink Serverllm-fuzzy2 versions
    <=2024 Q1+ 1 more
    • (no CPE)range: <=2024 Q1
    • (no CPE)range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.

References

1

News mentions

0

No linked articles in our index yet.