Vulnerabilities > Osisoft > PI Vision > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-11-17 | CVE-2021-43551 | Cross-site Scripting vulnerability in Osisoft PI Vision 2017/2019 A remote attacker with write access to PI Vision could inject code into a display. | 3.5 |
2020-07-27 | CVE-2020-10643 | Cross-site Scripting vulnerability in Osisoft PI Vision 2019 An authenticated remote attacker could use specially crafted URLs to send a victim using PI Vision 2019 mobile to a vulnerable web page due to a known issue in a third-party component. | 3.5 |
2020-07-25 | CVE-2020-10614 | Cross-site Scripting vulnerability in Osisoft PI Vision 2017/2019 In OSIsoft PI System multiple products and versions, an authenticated remote attacker with write access to PI Vision databases could inject code into a display. | 3.5 |
2020-01-15 | CVE-2019-18244 | Information Exposure Through Log Files vulnerability in Osisoft PI Vision 2017/2019 In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when service accounts are customized during installation or upgrade of PI Vision. | 1.9 |
2020-01-15 | CVE-2019-18273 | Cross-site Scripting vulnerability in Osisoft PI Vision 2017 OSIsoft PI Vision, PI Vision 2017 R2 and PI Vision 2017 R2 SP1. | 3.5 |
2019-04-08 | CVE-2018-19006 | Cross-site Scripting vulnerability in Osisoft PI Vision 2017 OSIsoft PI Vision, versions PI Vision 2017, and PI Vision 2017 R2, The application contains a cross-site scripting vulnerability where displays that reference AF elements and attributes containing JavaScript are affected. | 3.5 |