PT-2020-12238 · Osisoft · Osisoft Pi System

Published

2020-07-24

·

Updated

2021-12-21

·

CVE-2020-10610

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OSIsoft PI System (affected versions not specified)
Description A local attacker can modify a search path and plant a binary to exploit the affected PI System software, taking control of the local computer at Windows system privilege level. This results in unauthorized information disclosure, deletion, or modification.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-10610

Affected Products

Osisoft Pi System