- Description
- An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834. This affects NI SystemLink Server 2024 Q1 and prior versions. It also affects NI FlexLogger 2023 Q2 and prior versions which installed this shared service.
- Source
- security@ni.com
- NVD status
- Analyzed
- Products
- flexlogger, systemlink
CVSS 3.1
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- Hype score
- Not currently trending
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ni:flexlogger:*:*:*:*:*:*:*:*",
"matchCriteriaId": "8D4CB33D-BB7C-4EBD-9E78-A9EDF952A7A6",
"versionEndIncluding": "2023",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:ni:flexlogger:2023:q2:*:*:*:*:*:*",
"matchCriteriaId": "FA33AE39-F976-4C56-9A4B-8932BC6855C9",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ni:systemlink:*:*:*:*:*:*:*:*",
"matchCriteriaId": "61E2B822-C1E9-4ED5-A6D1-FF569A414330",
"versionEndIncluding": "2024",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:ni:systemlink:2024:q1:*:*:*:*:*:*",
"matchCriteriaId": "FA70DCDA-FE97-42A2-B45E-33154D29B840",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]