Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

NI — Vulnerabilities & Security Advisories 84

Browse all 84 CVE security advisories affecting NI. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NI develops hardware and software for test, measurement, and control applications, primarily serving engineering and scientific sectors. Its software ecosystem, including LabVIEW and TestStand, facilitates complex data acquisition and automated testing workflows. Historically, the platform has exhibited vulnerabilities ranging from remote code execution and buffer overflows to cross-site scripting and privilege escalation flaws. These issues often stem from legacy codebases and complex integration points within its extensive library of drivers and utilities. While no catastrophic, widespread breaches have defined its public history, the high number of recorded CVEs indicates persistent security challenges in maintaining robust defenses across diverse industrial environments. The company generally responds to disclosures through timely patches, yet the breadth of its product portfolio necessitates rigorous configuration management by users to mitigate risks associated with outdated components or misconfigured systems.

CVE ID Title CVSS Severity Published
CVE-2024-4081 Memory Corruption Due to Improper Length Check in NI LabVIEW — LabVIEW CWE-787 7.8 High 2024-07-23
CVE-2024-4080 Memory Corruption Due to Improper Length Checks in LabVIEW tdcore.dll — LabVIEW CWE-787 7.8 High 2024-07-23
CVE-2024-4079 Out of Bounds Read Due to Missing Bounds Check in LabVIEW — LabVIEW CWE-125 7.8 High 2024-07-23
CVE-2024-5602 Stack-based Buffer Overflow Vulnerability in NI I/O Trace Tool — IO Trace Tool CWE-121 7.8 High 2024-07-23
CVE-2024-6806 Missing Authorization Checks In NI VeriStand Gateway For Project Resources — VeriStand CWE-862 9.8 Critical 2024-07-22
CVE-2024-6805 Missing Authorization Checks in NI VeriStand Gateway for File Transfer Resources — VeriStand CWE-862 7.5 High 2024-07-22
CVE-2024-6794 Deserialization of Untrusted Data in NI VeriStand Waveform Streaming Server — VeriStand CWE-502 9.8 Critical 2024-07-22
CVE-2024-6793 Deserialization of Untrusted Data in NI VeriStand DataLogging Server — VeriStand CWE-502 9.8 Critical 2024-07-22
CVE-2024-6791 Directory Path Traversal Vulnerability in NI VeriStand with vsmodel Files — VeriStand CWE-22 7.8 High 2024-07-22
CVE-2024-6675 Deserialization of Untrusted Data Vulnerability in NI VeriStand Project File — VeriStand CWE-502 7.8 High 2024-07-22
CVE-2024-6638 Integer Overflow Vulnerability Reading TDMS Files in LabVIEW — LabVIEW CWE-190 5.5 Medium 2024-07-22
CVE-2024-6121 NI SystemLink Server Ships Out of Date Redis Version — SystemLink Server CWE-1395 7.8 High 2024-07-22
CVE-2024-6122 Incorrect Default Directory Permissions for NI SystemLink Redis Service — SystemLink Server CWE-276 5.5 Medium 2024-07-22
CVE-2024-4044 Deserialization of Untrusted Data Vulnerability in FlexLogger and InstrumentStudio — FlexLogger CWE-502 7.8 High 2024-05-10
CVE-2024-23612 Improper Error Handling Issue in LabVIEW — LabVIEW CWE-1285 7.8 High 2024-03-11
CVE-2024-23609 Improper Error Handling Issue in LabVIEW — LabVIEW CWE-1285 7.8 High 2024-03-11
CVE-2024-23611 Out of Bounds Write Due to Missing Bounds Check in LabVIEW — LabVIEW CWE-787 7.8 High 2024-03-11
CVE-2024-23610 Out of Bounds Write Due to Missing Bounds Check in LabVIEW — LabVIEW CWE-787 7.8 High 2024-03-11
CVE-2024-23608 Out of Bounds Write Due to Missing Bounds Check in LabVIEW — LabVIEW CWE-787 7.8 High 2024-03-11
CVE-2024-1156 NI SystemLink Server 安全漏洞 — SystemLink Server CWE-276 7.8 High 2024-02-20
CVE-2024-1155 Incorrect permissions for shared NI SystemLink Elixir based services — SystemLink Server CWE-276 7.8 High 2024-02-20
CVE-2023-5136 Incorrect Permission Assignment in the TopoGrafix DataPlugin for GPX — TopoGrafix DataPlugin for GPX CWE-611 5.5 Medium 2023-11-08
CVE-2023-4601 Stack-based Buffer Overflow in NI System Configuration Software — System Configuration CWE-121 8.1 High 2023-10-18
CVE-2023-4570 Improper Restriction in NI MeasurementLink Python Services — MeasurementLink CWE-420 8.8 High 2023-10-05

This page lists every published CVE security advisory associated with NI. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.