Vulnerabilities (CVE)

Filtered by vendor Osisoft Subscribe
Filtered by product Pi Vision
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-25163 1 Osisoft 1 Pi Vision 2022-04-27 4.9 MEDIUM 7.3 HIGH
A remote attacker with write access to PI ProcessBook files could inject code that is imported into OSIsoft PI Vision 2020 versions prior to 3.5.0. Unauthorized information disclosure, modification, or deletion is also possible if a victim views or interacts with the infected display. This vulnerability affects PI System data and other data accessible with victim’s user permissions.
CVE-2019-18271 1 Osisoft 1 Pi Vision 2020-01-23 6.8 MEDIUM 8.8 HIGH
OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to a cross-site request forgery that may be introduced on the PI Vision administration site.