CVE-2018-7496: Infoleak
Published Mar 14, 2018
·Updated
An Information Exposure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The server response header and referrer-policy response header each provide unintended information disclosure.
Affected Software
1 affected component
OSIsoft PI Vision<=2017
Event History
Mar 14, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-7496.
2
What is the affected software?
The affected software is OSIsoft PI Vision versions 2017 and prior.
3
What is the severity of CVE-2018-7496?
The severity of CVE-2018-7496 is medium, with a CVSS score of 5.3.
4
What is the description of CVE-2018-7496?
CVE-2018-7496 is an Information Exposure issue in OSIsoft PI Vision that results in unintended information disclosure through server response header and referrer-policy response header.
5
What is the fix for CVE-2018-7496?
To fix CVE-2018-7496, it is recommended to update to a version of OSIsoft PI Vision that is later than 2017.