Home
MEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HHIGH: 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:NDefault status
unaffected
2023 (custom)
affected
Default status
unaffected
2023 Patch 1
affected
Default status
unaffected
2023 (custom)
affected
Default status
unaffected
2023 Patch 1 (custom)
affected
Description
AVEVA PI Data Archive products are vulnerable to an uncaught exception that, if exploited, could allow an authenticated user to shut down certain necessary PI Data Archive subsystems, resulting in a denial of service.
Problem types
Product status
2023 (custom)
2023 Patch 1
2023 (custom)
2023 Patch 1 (custom)
Credits
AVEVA reported these vulnerabilities to CISA.
References
www.cisa.gov/news-events/ics-advisories/icsa-25-162-07
www.aveva.com/en/support-and-success/cyber-security-updates/