Relative Path Traversal Vulnerability in NI System Web Server
CVE-2025-12097
8.7HIGH
What is CVE-2025-12097?
A relative path traversal vulnerability exists in the NI System Web Server, which may lead to unauthorized information disclosure. Attackers can exploit this vulnerability by sending specially crafted requests to the server, enabling them to read arbitrary files residing on the system. This flaw impacts the NI System Web Server 2012 and earlier versions, highlighting the critical need for users to update their software to mitigate potential risks. The vulnerability was addressed in updates released in 2013, reinforcing the importance of maintaining up-to-date software to safeguard against security threats.
Affected Version(s)
LabVIEW 9.0.0 <= 12.*
