First published: Thu Mar 06 2025(Updated: )
A deserialization of untrusted data vulnerability exists in NI G Web Development Software that may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability affects G Web Development Software 2022 Q3 and prior versions.
Credit: security@ni.com
Affected Software | Affected Version | How to fix |
---|---|---|
NI G Web Development | <2022 Q3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12742 is classified as a critical vulnerability with potential for arbitrary code execution.
To mitigate CVE-2024-12742, users should upgrade to the latest version of NI G Web Development Software beyond 2022 Q3.
CVE-2024-12742 affects users of NI G Web Development Software version up to 2022 Q3.
CVE-2024-12742 is a deserialization of untrusted data vulnerability.
Exploitation of CVE-2024-12742 requires a user to open a specially crafted project file.