CVE-2024-6794

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jul 22, 2024
Updated: Jul 24, 2024
CWE ID 502

Summary

CVE-2024-6794 is a deserialization vulnerability affecting NI VeriStand Waveform Streaming Server. An attacker can exploit this issue by sending a maliciously crafted message, potentially leading to remote code execution. This vulnerability impacts NI VeriStand 2024 Q2 and earlier versions. Successful exploitation does not require user interaction, making it a serious threat. Untrusted data is the root cause, highlighting the importance of proper input validation and access control measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share