VYPR
Vendor

Ni

Products
44
CVEs
102
Across products
141
Status
Private

Products

44
View all 44 products →

Recent CVEs

102
View all 102 CVEs →
  • CVE-2024-6806CriJul 22, 2024
    risk 0.64cvss 9.8epss 0.01

    The NI VeriStand Gateway is missing authorization checks when an actor attempts to access Project resources. These missing checks may result in remote code execution. This affects NI VeriStand 2024 Q2 and prior versions.

  • CVE-2024-6794CriJul 22, 2024
    risk 0.64cvss 9.8epss 0.01

    A deserialization of untrusted data vulnerability exists in NI VeriStand Waveform Streaming Server that may result in remote code execution. Successful exploitation requires an attacker to send a specially crafted message. These vulnerabilities affect NI VeriStand 2024 Q2 and…

  • CVE-2024-6793CriJul 22, 2024
    risk 0.64cvss 9.8epss 0.01

    A deserialization of untrusted data vulnerability exists in NI VeriStand DataLogging Server that may result in remote code execution. Successful exploitation requires an attacker to send a specially crafted message. These vulnerabilities affect NI VeriStand 2024 Q2 and…

  • CVE-2025-2449HigMar 18, 2025
    risk 0.60cvss 8.8epss 0.31

    NI FlexLogger usiReg URI File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to create arbitrary files on affected installations of NI FlexLogger. User interaction is required to exploit this vulnerability in that the…

  • CVE-2026-9142CriJun 19, 2026
    risk 0.59cvss 9.1epss 0.00

    There is an insecure default credentials vulnerability in NI grpc-device when TLS configuration is not present and the server is bound beyond loopback.  This may allow an unauthenticated user access to the server on the local network.  This affects NI grpc-device 2.17.0 and…

  • CVE-2026-48137CriJun 19, 2026
    risk 0.59cvss 9.1epss 0.01

    There is an untrusted pointer dereference vulnerability in the NI grpc-device sideband streaming API that may allow an attacker to cause an arbitrary memory dereference, potentially resulting in remote code execution.  Successful exploitation requires an attacker  to supply a…

  • CVE-2026-9051CriMay 29, 2026
    risk 0.59cvss 9.1epss 0.01

    There is an authentication bypass vulnerability in the NI SystemLink Enterprise Dashboard application that may allow an unauthenticated remote attacker to bypass authentication controls leading to privilege escalation or information disclosure.  Successful exploitation requires…

  • CVE-2025-2450HigMar 18, 2025
    risk 0.57cvss 8.8epss 0.00

    NI Vision Builder AI VBAI File Processing Missing Warning Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NI Vision Builder AI. User interaction is required to exploit this vulnerability in…

  • CVE-2023-4601HigOct 18, 2023
    risk 0.53cvss 8.1epss 0.01

    A stack-based buffer overflow vulnerability exists in NI System Configuration that could result in information disclosure and/or arbitrary code execution. Successful exploitation requires that an attacker can provide a specially crafted response. This affects NI System…

  • CVE-2024-4044HigMay 14, 2024
    risk 0.52cvss 7.8epss 0.15

    A deserialization of untrusted data vulnerability exists in common code used by FlexLogger and InstrumentStudio that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability…

  • CVE-2026-18485HigAug 5, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver.  This may allow a local, authenticated user to escalate privileges and execute arbitrary code.  This vulnerability affects NI-PAL 26.3.1 and prior versions running on…

  • CVE-2026-32864HigApr 7, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds read in mgcore_SH_25_3!aligned_free() in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a…

  • CVE-2026-32863HigApr 7, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds read in sentry_transaction_context_set_operation() in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user…

  • CVE-2026-32862HigApr 7, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds write in ResFileFactory::InitResourceMgr() in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open…

  • CVE-2026-32861HigApr 7, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVCLASS file in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open…

  • CVE-2026-32860HigApr 7, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVLIB file in NI LabVIEW.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a…

  • CVE-2026-0957HigMar 13, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a…

  • CVE-2026-0956HigMar 13, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a…

  • CVE-2026-0955HigMar 13, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a…

  • CVE-2026-0954HigMar 13, 2026
    risk 0.51cvss 7.8epss 0.00

    There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted DSB file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to…