Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-43551

Опубликовано: 17 нояб. 2021
Источник: nvd
CVSS3: 6.5
CVSS3: 5.4
CVSS2: 3.5
EPSS Низкий

Описание

A remote attacker with write access to PI Vision could inject code into a display. Unauthorized information disclosure, modification, or deletion is possible if a victim views or interacts with the infected display using Microsoft Internet Explorer. The impact affects PI System data and other data accessible with victim's user permissions.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:osisoft:pi_vision:*:*:*:*:*:*:*:*
Версия до 2021 (исключая)

EPSS

Процентиль: 28%
0.00101
Низкий

6.5 Medium

CVSS3

5.4 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-79
CWE-79

Связанные уязвимости

CVSS3: 5.4
github
больше 3 лет назад

A remote attacker with write access to PI Vision could inject code into a display. Unauthorized information disclosure, modification, or deletion is possible if a victim views or interacts with the infected display using Microsoft Internet Explorer. The impact affects PI System data and other data accessible with victim’s user permissions.

EPSS

Процентиль: 28%
0.00101
Низкий

6.5 Medium

CVSS3

5.4 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-79
CWE-79