PT-2018-18134 · Osisoft · Osisoft Pi Data Archive

Published

2018-03-14

·

Updated

2019-10-09

·

CVE-2018-7529

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions OSIsoft PI Data Archive versions prior to 2018
Description A Deserialization of Untrusted Data issue allows unauthenticated users to modify deserialized data, potentially sending custom requests that crash the server.
Recommendations For OSIsoft PI Data Archive versions prior to 2018, update to a version newer than 2017 to resolve the issue.

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-7529

Affected Products

Osisoft Pi Data Archive