First published: Mon Feb 03 2025(Updated: )
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NI Vision Builder AI. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-12740.
Affected Software | Affected Version | How to fix |
---|---|---|
NI Vision Builder AI |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
ZDI-25-078 has a high severity rating due to its potential for remote code execution.
To fix ZDI-25-078, update NI Vision Builder AI to the latest version provided by the vendor.
ZDI-25-078 affects installations of NI Vision Builder AI across all versions.
With ZDI-25-078, remote attackers can execute arbitrary code after user interaction.
Yes, user interaction is necessary for ZDI-25-078, as the target must visit a malicious page or open a malicious file.