Vulnerabilities > CVE-2023-34348 - Improper Handling of Exceptional Conditions vulnerability in Aveva PI Server 2018/2023

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
aveva
CWE-755

Summary

AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated user to remotely crash the PI Message Subsystem of a PI Server, resulting in a denial-of-service condition.

Vulnerable Configurations

Part Description Count
Application
Aveva
4