CVE-2019-13515: Medium severity osisoft pi api vulnerability
Published Aug 15, 2019
·Updated
OSIsoft PI Web API 2018 and prior may allow disclosure of sensitive information.
Affected Software
1 affected component
OSIsoft PI Web API<=2018
Event History
Aug 15, 2019
CVE Published
via MITRE·06:39 PM
Data Sourced
via MITRE·06:39 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-13515?
CVE-2019-13515 has a medium severity rating due to its potential for disclosing sensitive information.
2
How do I fix CVE-2019-13515?
To mitigate CVE-2019-13515, upgrade to a version of OSIsoft PI Web API that is newer than 2018.
3
What types of sensitive information are exposed by CVE-2019-13515?
CVE-2019-13515 may allow unauthorized access to system credentials and configuration data.
4
Which versions of OSIsoft PI Web API are affected by CVE-2019-13515?
CVE-2019-13515 affects OSIsoft PI Web API versions up to and including 2018.
5
Is there a workaround for CVE-2019-13515?
A practical workaround for CVE-2019-13515 is to implement stricter access controls on the OSIsoft PI Web API.