Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-2630


There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to insert a malicious DLL into the uncontrolled search path. This vulnerability affects NI LabVIEW 2025 Q1 and prior versions.


Published

2025-04-09T19:15:48.490

Last Modified

2025-08-18T19:40:32.253

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-427

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ni labview ≤ 2021 Yes
Application ni labview 2022 Yes
Application ni labview 2022 Yes
Application ni labview 2022 Yes
Application ni labview 2022 Yes
Application ni labview 2022 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2024 Yes
Application ni labview 2024 Yes
Application ni labview 2024 Yes
Application ni labview 2024 Yes
Application ni labview 2024 Yes
Application ni labview 2025 Yes
Application ni labview 2025 Yes

References