May 15, 2024, 5 a.m. |

ZDI: Published Advisories www.zerodayinitiative.com

This vulnerability allows remote attackers to execute arbitrary code on affected installations of NI FlexLogger. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-4044.

arbitrary code attackers code code execution cvss data deserialization exploit file malicious page parsing rating remote code remote code execution target untrusted vulnerability zdi

More from www.zerodayinitiative.com / ZDI: Published Advisories

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Engineering Practice Lead

@ NCC Group | GBR Manchester Hardman Boulevard

Senior Cyber Security Engineer - Cloud & Multifactor Authentication

@ General Motors | GM Global Technical Center - Michigan IT Innovation Center