Known Vulnerabilities for Pi Web Api by Osisoft
Listed below are 8 of the newest known vulnerabilities associated with "Pi Web Api" by "Osisoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-43549 json | A remote authenticated attacker with write access to a PI Server could trick a user into interacting with a PI Web API endpoi... | 4.8 - MEDIUM | 2021-11-18 | 2021-11-23 |
| CVE-2020-12021 json | In OSIsoft PI Web API 2019 Patch 1 (1.12.0.6346) and all previous versions, the affected product is vulnerable to a cross-sit... | 9 - CRITICAL | 2020-06-23 | 2020-07-02 |
| CVE-2019-13516 json | In OSIsoft PI Web API and prior, the affected product is vulnerable to a direct attack due to a cross-site request forgery pr... | 8.8 - HIGH | 2019-08-15 | 2023-03-08 |
| CVE-2019-13515 json | OSIsoft PI Web API 2018 and prior may allow disclosure of sensitive information. | 6.5 - MEDIUM | 2019-08-15 | 2019-10-09 |
| CVE-2018-7508 json | A Cross-site Scripting issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Cross-site scripting may occur ... | 6.1 - MEDIUM | 2018-03-14 | 2019-10-09 |
| CVE-2018-7500 json | A Permissions, Privileges, and Access Controls issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Privile... | 9.8 - CRITICAL | 2018-03-14 | 2019-10-09 |
| CVE-2017-7926 json | A Cross-Site Request Forgery issue was discovered in OSIsoft PI Web API versions prior to 2017 (1.9.0). The vulnerability all... | 8.8 - HIGH | 2017-08-25 | 2019-10-09 |
| CVE-2017-5153 json | An issue was discovered in OSIsoft PI Coresight 2016 R2 and earlier versions, and PI Web API 2016 R2 when deployed using the ... | 7.8 - HIGH | 2017-02-13 | 2017-03-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Osisoft | Pi Web Api | 2019 | |||
| Application | Osisoft | Pi Web Api | 2019 | |||
| Application | Osisoft | Pi Web Api | 2019 | |||
| Application | Osisoft | Pi Web Api | 2018 | |||
| Application | Osisoft | Pi Web Api | 2017 | |||
| Application | Osisoft | Pi Web Api | 2017 | |||
| Application | Osisoft | Pi Web Api | 2017 | |||
| Application | Osisoft | Pi Web Api | 2016 | |||
| Application | Osisoft | Pi Web Api | 2016 | |||
| Application | Osisoft | Pi Web Api | 2016 | |||
| Application | Osisoft | Pi Web Api | 2015 | |||
| Application | Osisoft | Pi Web Api | 2015 | |||
| Application | Osisoft | Pi Web Api | 2015 | |||
| Application | Osisoft | Pi Web Api | 2014 | |||
| Application | Osisoft | Pi Web Api | 2014 |