CVE-2021-43551

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
17/11/2021
Last modified:
12/04/2022

Description

A remote attacker with write access to PI Vision could inject code into a display. Unauthorized information disclosure, modification, or deletion is possible if a victim views or interacts with the infected display using Microsoft Internet Explorer. The impact affects PI System data and other data accessible with victim's user permissions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:osisoft:pi_vision:*:*:*:*:*:*:*:* 2021 (excluding)


References to Advisories, Solutions, and Tools