Vulnerabilidades em NI

74 resultados
Análise Vexday

Com 73 CVEs catalogadas e nenhuma confirmada em exploração ativa no CISA KEV, o perfil de risco da NI situa-se abaixo da média geral do catálogo, o que indica menor pressão imediata de ameaças oportunistas. Ainda assim, 6 vulnerabilidades de severidade crítica e 15 surgidas nos últimos 90 dias sinalizam uma superfície em expansão recente que merece acompanhamento contínuo. A falha mais comum é CWE-787 (escrita fora dos limites), categoria historicamente associada a impacto elevado em ambientes de controle e automação industrial — segmento central no portfólio da NI. A CVE mais perigosa no momento, CVE-2025-2449, apresenta EPSS de 0,31, o maior observado no conjunto, sugerindo probabilidade não negligenciável de exploração a curto prazo e devendo ser tratada com prioridade nos ciclos de correção.

CVE-2025-2449HIGHNI FlexLogger usiReg URI File Parsing Directory Traversal Remote Code Execution VulnerabilityEPSS 30.8%CVE-2024-4044HIGHDeserialization of Untrusted Data Vulnerability in FlexLogger and InstrumentStudioEPSS 14.7%CVE-2024-12742HIGHDeserialization of Untrusted Data Vulnerability in NI G Web Development SoftwareEPSS 5.5%CVE-2024-12741HIGHDeserialization Of Untrusted Data Vulnerability In NI DAQExpress Project FileEPSS 4.2%CVE-2025-7848HIGHMissing input check in lvpict.cpp used in NI LabVIEWEPSS 4.2%CVE-2024-6793CRITICALDeserialization of Untrusted Data in NI VeriStand DataLogging ServerEPSS 1.2%CVE-2024-6794CRITICALDeserialization of Untrusted Data in NI VeriStand Waveform Streaming ServerEPSS 1.2%CVE-2024-6806CRITICALMissing Authorization Checks In NI VeriStand Gateway For Project ResourcesEPSS 1.0%CVE-2024-6805HIGHMissing Authorization Checks in NI VeriStand Gateway for File Transfer ResourcesEPSS 1.0%CVE-2026-9051CRITICALAuthentication Bypass Vulnerability in NI SystemLink EnterpriseEPSS 0.6%CVE-2023-4601HIGHStack-based Buffer Overflow in NI System Configuration SoftwareEPSS 0.6%CVE-2024-23611HIGHOut of Bounds Write Due to Missing Bounds Check in LabVIEWEPSS 0.6%CVE-2024-23612HIGHImproper Error Handling Issue in LabVIEWEPSS 0.6%CVE-2025-12097HIGHRelative Path Traversal Vulnerability in NI System Web ServerEPSS 0.6%CVE-2024-23610HIGHOut of Bounds Write Due to Missing Bounds Check in LabVIEWEPSS 0.6%CVE-2024-23609HIGHImproper Error Handling Issue in LabVIEWEPSS 0.6%CVE-2024-23608HIGHOut of Bounds Write Due to Missing Bounds Check in LabVIEWEPSS 0.6%CVE-2026-48137CRITICALUntrusted pointer dereference in NI grpc-device sideband streaming APIEPSS 0.6%CVE-2026-48138HIGHOut-of-bounds read vulnerability in the NI grpc-device streaming APIEPSS 0.5%CVE-2026-48139HIGHNULL pointer dereference vulnerability in NI grpc-device data moniker serviceEPSS 0.5%