First published: Mon Aug 14 2017(Updated: )
An Improper Authorization issue was discovered in OSIsoft PI Integrator for Business Analytics before 2016 R2, PI Integrator for Microsoft Azure before 2016 R2 SP1, and PI Integrator for SAP HANA before 2017. An attacker is able to gain privileged access to the system while unauthorized.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
OSIsoft PI Integrator for Business Analytics | =2016 | |
Osisoft Pi Integrator For Microsoft Azure | =2016 | |
Osisoft Pi Integrator for SAP HANA | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9653 is a critical vulnerability due to improper authorization that allows unauthorized access to sensitive functions.
To fix CVE-2017-9653, upgrade to the latest versions of OSIsoft PI Integrator for Business Analytics, PI Integrator for Microsoft Azure, or PI Integrator for SAP HANA as specified by the vendor.
CVE-2017-9653 affects OSIsoft PI Integrator for Business Analytics, PI Integrator for Microsoft Azure, and PI Integrator for SAP HANA, all before their respective 2016 R2 versions.
CVE-2017-9653 is classified as an Improper Authorization vulnerability.
Yes, exploitation of CVE-2017-9653 could lead to unauthorized access and potential data breaches.