CVE-2024-6791

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
22/07/2024
Last modified:
17/09/2024

Description

A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .vsmodel file. This vulnerability affects VeriStand 2024 Q2 and prior versions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ni:veristand:*:*:*:*:*:*:*:* 2024 (including)
cpe:2.3:a:ni:veristand:2024:q2:*:*:*:*:*:*