CVE-2025-7361
Code Injection Vulnerability in NI LabVIEW when using CIN nodes
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A code injection vulnerability due to an improper initialization check exists in NI LabVIEW that may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI using a CIN node. This vulnerability affects 32-bit NI LabVIEW 2025 Q1 and prior versions. LabVIEW 64-bit versions do not support CIN nodes and are not affected.
Existe una vulnerabilidad de inyección de código en NI LabVIEW debido a una comprobación de inicialización incorrecta que puede provocar la ejecución de código arbitrario. Para explotarla con éxito, un atacante debe obligar al usuario a abrir un VI especialmente manipulado mediante un nodo CIN. Esta vulnerabilidad afecta a NI LabVIEW 2025 Q1 de 32 bits y versiones anteriores. Las versiones de LabVIEW de 64 bits no son compatibles con nodos CIN y no se ven afectadas.
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2025-07-08 CVE Reserved
- 2025-07-29 CVE Published
- 2025-08-02 CVE Updated
- 2025-08-04 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-94: Improper Control of Generation of Code ('Code Injection')
CAPEC
- CAPEC-242: Code Injection
References (1)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
NI Search vendor "NI" | LabVIEW Search vendor "NI" for product "LabVIEW" | <= 22.3.5 Search vendor "NI" for product "LabVIEW" and version " <= 22.3.5" | en |
Affected
| ||||||
NI Search vendor "NI" | LabVIEW Search vendor "NI" for product "LabVIEW" | >= 23.0.0 <= 23.3.6 Search vendor "NI" for product "LabVIEW" and version " >= 23.0.0 <= 23.3.6" | en |
Affected
| ||||||
NI Search vendor "NI" | LabVIEW Search vendor "NI" for product "LabVIEW" | >= 24.0.0 <= 24.3.3 Search vendor "NI" for product "LabVIEW" and version " >= 24.0.0 <= 24.3.3" | en |
Affected
| ||||||
NI Search vendor "NI" | LabVIEW Search vendor "NI" for product "LabVIEW" | >= 25.0.0 < 25.3.0 Search vendor "NI" for product "LabVIEW" and version " >= 25.0.0 < 25.3.0" | en |
Affected
|