CVE-2017-9641

PI Coresight 2016 R2 contains a cross-site request forgery vulnerability that may allow access to the PI system. OSIsoft recommends that users upgrade to PI Vision 2017 or greater to mitigate this vulnerability.
References
Link Resource
http://www.securityfocus.com/bid/99540 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-17-192-04 Third Party Advisory US Government Resource
https://techsupport.osisoft.com/Troubleshooting/Alerts/AL00320 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:osisoft:pi_coresight:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-05-25 15:29

Updated : 2023-12-10 12:30


NVD link : CVE-2017-9641

Mitre link : CVE-2017-9641

CVE.ORG link : CVE-2017-9641


JSON object : View

Products Affected

osisoft

  • pi_coresight
CWE
CWE-352

Cross-Site Request Forgery (CSRF)