Osisoft / PI Vision
15 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-25167 | OSIsoft PI Vision Incorrect Authorization | MEDIUM | 6.5 | Apr 18, 2022 |
| CVE-2020-25163 | OSIsoft PI Vision Cross-site Scripting | HIGH | 7.7 | Apr 18, 2022 |
| CVE-2021-43553 | OSIsoft PI Vision | MEDIUM | 4.3 | Nov 17, 2021 |
| CVE-2021-43551 | OSIsoft PI Vision | MEDIUM | 6.5 | Nov 17, 2021 |
| CVE-2020-10643 | OSIsoft PI System | MEDIUM | 6.5 | Jul 27, 2020 |
| CVE-2020-10614 | In OSIsoft PI System multiple products and versions, an authenticated remote attacker with write access to PI Vision databases could inject code into a display… | MEDIUM | 4.8 | Jul 24, 2020 |
| CVE-2019-18244 | In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when service accounts are customized during… | MEDIUM | 4.7 | Jan 15, 2020 |
| CVE-2019-18273 | OSIsoft PI Vision, PI Vision 2017 R2 and PI Vision 2017 R2 SP1. The affected product is vulnerable to cross-site scripting, which may allow invalid input to be… | MEDIUM | 4.8 | Jan 15, 2020 |
| CVE-2019-18271 | OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to a cross-site request forgery that may be introduced on the PI… | HIGH | 8.8 | Jan 15, 2020 |
| CVE-2019-18275 | OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to an improper access control, which may return unauthorized tag… | MEDIUM | 6.5 | Jan 15, 2020 |
| CVE-2018-19006 | OSIsoft PI Vision, versions PI Vision 2017, and PI Vision 2017 R2, The application contains a cross-site scripting vulnerability where displays that reference… | MEDIUM | 4.8 | Apr 8, 2019 |
| CVE-2018-7508 | A Cross-site Scripting issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Cross-site scripting may occur when input is incorrectly neutrali… | MEDIUM | 6.1 | Mar 14, 2018 |
| CVE-2018-7504 | A Protection Mechanism Failure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The X-XSS-Protection response header is not set to block, all… | MEDIUM | 6.1 | Mar 14, 2018 |
| CVE-2018-7500 | A Permissions, Privileges, and Access Controls issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Privileges may be escalated, giving attac… | CRITICAL | 9.8 | Mar 14, 2018 |
| CVE-2018-7496 | An Information Exposure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The server response header and referrer-policy response header each… | MEDIUM | 5.3 | Mar 14, 2018 |
Showing 1 to 15 of 15 CVEs