← Back

CVE-2025-2629

nvd nist
Published: Apr 9, 2025Modified: Jun 17, 2026

JSON object

Loading...
7.0
Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: security@ni.com (Secondary)

Description

There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW when loading NI Error Reporting. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to insert a malicious DLL into the uncontrolled search path. This vulnerability affects NI LabVIEW 2025 Q1 and prior versions.

Affected (20)

Products: Ni: Labview
1 product
Labview
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
Ni
Up to 2021
Version 2022 q1
Version 2022 q3
Version 2022 q3_patch1
Version 2022 q3_patch2
Version 2022 q3_patch4
Version 2023 q1
Version 2023 q3
Version 2023 q3_patch1
Version 2023 q3_patch2
Version 2023 q3_patch3
Version 2023 q3_patch4
Version 2023 q3_patch5
Version 2024 q1
Version 2024 q1_patch1
Version 2024 q3
Version 2024 q3_patch1
Version 2024 q3_patch2
Version 2025 q1
Version 2025 q1_patch1

Timeline

No history available yet.