First published: Tue Nov 09 2021(Updated: )
PI Vision could disclose information to a user with insufficient privileges for an AF attribute that is the child of another attribute and is configured as a Limits property.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
OSIsoft | <2021 | |
OSIsoft PI Vision | <2021 | 2021 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-43553 is a vulnerability in PI Vision that allows a user with insufficient privileges to access sensitive information.
CVE-2021-43553 allows unauthorized users to view information in PI Vision that they should not have access to.
CVE-2021-43553 has a severity rating of 4.3, which is considered medium.
To fix CVE-2021-43553, it is recommended to update PI Vision to the latest version available, which includes a patch for this vulnerability.
You can find more information about CVE-2021-43553 on the official US-CERT website at the following URL: https://us-cert.cisa.gov/ics/advisories/icsa-21-313-05