CVE-2017-9641

PI Coresight 2016 R2 contains a cross-site request forgery vulnerability that may allow access to the PI system. OSIsoft recommends that users upgrade to PI Vision 2017 or greater to mitigate this vulnerability.
References
Link Resource
https://techsupport.osisoft.com/Troubleshooting/Alerts/AL00320 Vendor Advisory
https://ics-cert.us-cert.gov/advisories/ICSA-17-192-04 Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/99540 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:osisoft:pi_coresight:*:*:*:*:*:*:*:*

Information

Published : 2018-05-25 08:29

Updated : 2019-10-09 16:30


NVD link : CVE-2017-9641

Mitre link : CVE-2017-9641


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

osisoft

  • pi_coresight