PI Server in OSIsoft PI System before 3.4.380.x does not properly use encryption in the default authentication process, which allows remote attackers to read or modify information in databases via unspecified vectors.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.securityfocus.com/archive/1/506826/100/0/threaded |
History
No history.
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2009-10-01T15:00:00
Updated: 2024-08-07T04:24:18.236Z
Reserved: 2009-01-20T00:00:00
Link: CVE-2009-0209
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-10-01T15:30:00.217
Modified: 2024-11-21T00:59:21.253
Link: CVE-2009-0209
Redhat
No data.