ZDI-CAN-21772: ZDI-24-209: NI FlexLogger ServiceRegistry Missing Authorization Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of NI FlexLogger. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-1155.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-21772?
The vulnerability ZDI-CAN-21772 has a CVSS rating of 7.8, indicating a high severity level.
Who is affected by ZDI-CAN-21772?
ZDI-CAN-21772 affects installations of NI FlexLogger by National Instruments.
What type of vulnerability is ZDI-CAN-21772?
ZDI-CAN-21772 is a privilege escalation vulnerability that allows local attackers to gain elevated privileges.
How do I fix ZDI-CAN-21772?
To fix ZDI-CAN-21772, ensure that you apply the latest security patches and updates provided by National Instruments for FlexLogger.
Can ZDI-CAN-21772 be exploited remotely?
No, exploiting ZDI-CAN-21772 requires the attacker to have local access to the system.