NI LabVIEW
cpe:2.3:a:ni:labview:*:*:*:*:*:*:*
- 2025
- 2024
- 2023
- 2022
- 2021
A DLL hijacking vulnerability has been identified in NI LabVIEW versions 2025 Q1 and prior. This vulnerability arises from an uncontrolled search path, which can be exploited by an attacker to execute arbitrary code. Successful exploitation requires the attacker to place a malicious DLL into the uncontrolled search path.
Exploitation of this vulnerability could lead to arbitrary code execution.
Users are advised to upgrade to LabVIEW 2025 Q1 Patch 2 or later. For deployed LabVIEW applications, the LabVIEW Run-Time Engine should also be patched.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.