First published: Mon Jul 22 2024(Updated: )
A deserialization of untrusted data vulnerability exists in NI VeriStand DataLogging Server that may result in remote code execution. Successful exploitation requires an attacker to send a specially crafted message. These vulnerabilities affect NI VeriStand 2024 Q2 and prior versions.
Credit: security@ni.com
Affected Software | Affected Version | How to fix |
---|---|---|
NI VeriStand | <=2024 | |
NI VeriStand | =2024-q2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6793 is rated as a critical vulnerability due to its potential to allow remote code execution.
To mitigate CVE-2024-6793, update NI VeriStand to the latest version beyond 2024 Q2.
CVE-2024-6793 is a deserialization of untrusted data vulnerability.
CVE-2024-6793 affects NI VeriStand 2024 Q2 and earlier versions.
Successful exploitation of CVE-2024-6793 requires the attacker to send a specially crafted message to the DataLogging Server.