CVE-2020-25191: Ni Compactrio Firmware
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that could reboot the CompactRIO (Driver versions prior to 20.5) remotely.
Affected products
- Ni Compactrio Firmware: before 20.5 (fixed in 20.5)
Published 2020-12-11. Last modified 2026-06-17.