CVE-2019-18275: Medium severity osisoft vulnerability
Published Jan 15, 2020
·Updated
OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to an improper access control, which may return unauthorized tag data when viewing analysis data reference attributes.
Affected Software
1 affected component
OSIsoft PI Vision<2019
Event History
Jan 15, 2020
CVE Published
via MITRE·06:36 PM
Data Sourced
via MITRE·06:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-18275?
CVE-2019-18275 is categorized as a medium severity vulnerability due to improper access control.
2
How do I fix CVE-2019-18275?
To fix CVE-2019-18275, upgrade to a version of PI Vision that is 2019 or later.
3
What versions of PI Vision are affected by CVE-2019-18275?
All versions of PI Vision prior to 2019 are affected by CVE-2019-18275.
4
What type of vulnerability is CVE-2019-18275?
CVE-2019-18275 is an improper access control vulnerability that may expose unauthorized tag data.
5
What potential impact does CVE-2019-18275 have on users?
CVE-2019-18275 can lead to unauthorized access to sensitive analysis data reference attributes.