ICSA-25-162-07: : aveva pi data archive: versions 2018 sp3 patch 4 and prior (cve-2025-44019) vulnerability
Affected Software
6 affected components
: AVEVA PI Data Archive: Versions 2018 SP3 Patch 4 and prior (CVE-2025-44019)
: AVEVA PI Data Archive: Version 2023 (CVE-2025-44019, CVE-2025-36539)
: AVEVA PI Data Archive: Version 2023 Patch 1 (CVE-2025-44019, CVE-2025-36539)
: AVEVA PI Server: Versions 2018 SP3 Patch 6 and prior (CVE-2025-44019)
: AVEVA PI Server: Version 2023 (CVE-2025-44019, CVE-2025-36539)
: AVEVA PI Server: Version 2023 Patch 1 (CVE-2025-44019, CVE-2025-36539)
Event History
Jun 12, 2025
Advisory Published
07:57 PM
Frequently Asked Questions
1
What is the severity of ICSA-25-162-07?
ICSA-25-162-07 is categorized with a high severity due to potential unauthorized access and data exposure risks.
2
How do I fix ICSA-25-162-07?
To fix ICSA-25-162-07, update the affected AVEVA PI Data Archive and AVEVA PI Server to the latest patched versions.
3
What vulnerabilities are associated with ICSA-25-162-07?
ICSA-25-162-07 is associated with CVE-2025-44019 and CVE-2025-36539, which affect various versions of AVEVA software.
4
What is affected by ICSA-25-162-07?
ICSA-25-162-07 affects AVEVA PI Data Archive and AVEVA PI Server versions prior to the specified patches.
5
Is there any workaround for ICSA-25-162-07?
While it is recommended to apply patches, temporary mitigations may include restricting access to affected systems.