CVE-2024-12741: Ni Daqexpress

High severity, CVSS 7.8. EPSS: 4.2% chance of exploitation in the next 30 days.

A deserialization of untrusted data vulnerability exists in NI DAQExpress that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability affects DAQExpress 5.1 and prior versions.  Please note that DAQExpress is an EOL product and will not receive any updates.

Affected products

  • Ni Daqexpress: version 0 only

Published 2024-12-18. Last modified 2026-06-17.