ZeroHour

CVE-2018-7500

CVSS 3.0
9.8 critical
EPSS
2%p78
Published
()
Modified
Description

A Permissions, Privileges, and Access Controls issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Privileges may be escalated, giving attackers access to the PI System via the service account.

Vendors
osisoft
Products
pi web api, pi vision
Weakness
CWE-264
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.