NI LabVIEW
cpe:2.3:a:ni:labview:*:*:*:*:*:*:*
- 2025 Q1
- 2024
- 2023
- 2022
- 2021 and prior
A DLL hijacking vulnerability has been identified in NI LabVIEW versions 2025 Q1 and prior. This issue arises from an uncontrolled search path when the application loads NI Error Reporting, potentially leading to arbitrary code execution. Exploitation requires an attacker to place a malicious DLL into the vulnerable search path.
Exploitation of this vulnerability could allow for arbitrary code execution on the affected system.
Users are advised to upgrade to LabVIEW 2025 Q1 Patch 2 or later. For LabVIEW 2024, 2023, and 2022, similar upgrade instructions apply. LabVIEW 2021 and prior versions are not in mainstream support.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.