Description
A deserialization of untrusted data vulnerability exists in common code used by FlexLogger and InstrumentStudio that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability affects NI FlexLogger 2024 Q1 and prior versions as well as NI InstrumentStudio 2024 Q1 and prior versions.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://ni.com/r/CVE-2024-4044 |
|
History
No history.
Status: PUBLISHED
Assigner: NI
Published:
Updated: 2024-08-01T20:26:57.269Z
Reserved: 2024-04-22T21:05:40.301Z
Link: CVE-2024-4044
Updated: 2024-08-01T20:26:57.269Z
Status : Deferred
Published: 2024-05-14T15:42:45.640
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-4044
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:42:27Z
Weaknesses