In OSIsoft PI Web API and prior, the affected product is vulnerable to a direct attack due to a cross-site request forgery protection setting that has not taken effect.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-19-225-02 | Mitigation Third Party Advisory US Government Resource |
Configurations
Information
Published : 2019-08-15 12:15
Updated : 2023-03-07 17:12
NVD link : CVE-2019-13516
Mitre link : CVE-2019-13516
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
osisoft
- pi_web_api