Vulnerability Details CVE-2024-6794
A deserialization of untrusted data vulnerability exists in NI VeriStand Waveform Streaming Server that may result in remote code execution. Successful exploitation requires an attacker to send a specially crafted message. These vulnerabilities affect NI VeriStand 2024 Q2 and prior versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.027
EPSS Ranking 85.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-6794
-
cpe:2.3:a:ni:veristand:2013
-
cpe:2.3:a:ni:veristand:2014
-
cpe:2.3:a:ni:veristand:2015
-
cpe:2.3:a:ni:veristand:2016
-
cpe:2.3:a:ni:veristand:2017
-
cpe:2.3:a:ni:veristand:2018
-
cpe:2.3:a:ni:veristand:2019
-
cpe:2.3:a:ni:veristand:2020
-
cpe:2.3:a:ni:veristand:2021
-
cpe:2.3:a:ni:veristand:2023
-
cpe:2.3:a:ni:veristand:2024