Security Advisory

CVE-2024-12741

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-18 19:20:41
Last updated 2025-03-06 16:18:31
Assigner NI
State PUBLISHED

Description

A deserialization of untrusted data vulnerability exists in NI DAQExpress that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability affects DAQExpress 5.1 and prior versions.  Please note that DAQExpress is an EOL product and will not receive any updates.