CVE Vulnerabilities

CVE-2020-10604

Improper Handling of Exceptional Conditions

Published: Jul 25, 2020 | Modified: Oct 21, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

In OSIsoft PI System multiple products and versions, a remote, unauthenticated attacker could crash PI Network Manager service through specially crafted requests. This can result in blocking connections and queries to PI Data Archive.

Weakness

The product does not handle or incorrectly handles an exceptional condition.

Affected Software

Name Vendor Start Version End Version
Pi_data_archive Osisoft 2018 (including) 2018 (including)
Pi_data_archive Osisoft 2018-sp2 (including) 2018-sp2 (including)

References