Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-5136: Incorrect Permission Assignment in the TopoGrafix DataPlugin for GPX

An incorrect permission assignment in the TopoGrafix DataPlugin for GPX could result in information disclosure. An attacker could exploit this vulnerability by getting a user to open a specially crafted data file.

CVE
#vulnerability

Overview

An incorrect permission assignment in the TopoGrafix DataPlugin for GPX could result in information disclosure. An attacker could exploit this vulnerability by getting a user to open a specially crafted data file.

This vulnerability is identified as CVE-2023-5136.

  • Mitigation Guidance
  • Affected Products
  • CVSS Score
  • Further Information
  • Acknowledgements
  • Additional Resources

NI recommends upgrading the TopoGraphix DataPlugin for GPX to fix against this vulnerability. Refer to the Affected Products section for information on how to get the update.

At NI, we view the security of our products as an important part of our commitment to our customers. Go to ni.com/security to stay informed and act upon security alerts and issues.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda