CVE-2020-25191: Ni Compactrio Firmware

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that could reboot the CompactRIO (Driver versions prior to 20.5) remotely.

Affected products

  • Ni Compactrio Firmware: before 20.5 (fixed in 20.5)

Published 2020-12-11. Last modified 2026-06-17.