CVE-2018-7508

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
14/03/2018
Last modified:
09/10/2019

Description

A Cross-site Scripting issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Cross-site scripting may occur when input is incorrectly neutralized.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:osisoft:pi_web_api:*:*:*:*:*:*:*:* 2017 (including)
cpe:2.3:a:osisoft:pi_web_api:2017:r2:*:*:*:*:*:*
cpe:2.3:a:osisoft:pi_vision:*:*:*:*:*:*:*:* 2017 (including)