Relative Path Traversal Vulnerability in NI System Web Server
CVE-2025-12097

8.7HIGH

Key Information:

Vendor

Ni

Status
Vendor
CVE Published:
4 December 2025

What is CVE-2025-12097?

A relative path traversal vulnerability exists in the NI System Web Server, which may lead to unauthorized information disclosure. Attackers can exploit this vulnerability by sending specially crafted requests to the server, enabling them to read arbitrary files residing on the system. This flaw impacts the NI System Web Server 2012 and earlier versions, highlighting the critical need for users to update their software to mitigate potential risks. The vulnerability was addressed in updates released in 2013, reinforcing the importance of maintaining up-to-date software to safeguard against security threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

LabVIEW 9.0.0 <= 12.*

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.