Vulnerabilities > Osisoft > PI Vision > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-18 CVE-2020-25163 Cross-site Scripting vulnerability in Osisoft PI Vision 2017/2019
A remote attacker with write access to PI ProcessBook files could inject code that is imported into OSIsoft PI Vision 2020 versions prior to 3.5.0.
network
low complexity
osisoft CWE-79
7.3
2020-01-15 CVE-2019-18271 Cross-Site Request Forgery (CSRF) vulnerability in Osisoft PI Vision 2017/2019
OSIsoft PI Vision, All versions of PI Vision prior to 2019.
network
low complexity
osisoft CWE-352
8.8